Memory corruption in OpenBSD - #VU7204
Published: June 26, 2017
Vulnerability identifier: #VU7204
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: N/A
CWE-ID: CWE-119
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vendor: OpenBSD
Affected software:
OpenBSD
OpenBSD
Detailed vulnerability description
The vulnerability allows a local attacker to cause DoS condition on the target system.
The weakness exists due to memory free error in wsmux_getmux(). A local attacker can trigger memory corruption and cause the kernel to crash.
Successful exploitation of the vulnerability results in denial of service.
The weakness exists due to memory free error in wsmux_getmux(). A local attacker can trigger memory corruption and cause the kernel to crash.
Successful exploitation of the vulnerability results in denial of service.
Remediation
Install update from vendor's website.