Secunia Logo
 
CVE Reference: CVE-2008-0384
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-0384

Description:
OpenBSD 4.2 allows local users to cause a denial of service (kernel panic) by calling the SIOCGIFRTLABEL IOCTL on an interface that does not have a route label, which triggers a NULL pointer dereference when the return value from the rtlabel_id2name function is not checked.

CVE Status:
Candidate

References:

ST
  1019188

SAID
  Secunia Advisory: SA28473

OPENBSD
  http://www.openbsd.org/errata42.html#005_ifrtlabel

MLIST
  http://marc.info/?l=openbsd-security-announce&m=120007327504064

MILW0RM
  http://www.milw0rm.com/exploits/4935

BID
  27252


Return to the previous page.