CVE-2009-3527 Information

Description

Race condition in the Pipe (IPC) close function in FreeBSD 6.3 and 6.4 allows local users to cause a denial of service (crash) or gain privileges via vectors related to kqueues which triggers a use after free leading to a NULL pointer dereference or memory corruption.

Reference

http://osvdb.org/58544 http://security.freebsd.org/advisories/FreeBSD-SA-09:13.pipe.asc http://www.securityfocus.com/archive/1/506449 http://www.securityfocus.com/bid/36375 http://www.securitytracker.com/id?1022982

Share on: