LOW
verifiedexecioctl in verified_exec.c in NetBSD 2.0.2 calls NDINIT with UIO_USERSPACE rather than UID_SYSSPACE, which removes the functionality of the verified exec kernel subsystem and might allow local users to execute Trojan horse programs
Published Apr 13, 2006
3.6
LOWCVSS 2.0
EPSS 0.33%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.