CVE-2016-1887 Information
Feb 14, 2021
cve
Description
Integer signedness error in the sockargs function in sys/kern/uipc_syscalls.c in FreeBSD 10.1 before p34 10.2 before p17 and 10.3 before p3 allows local users to cause a denial of service (memory overwrite and kernel panic) or gain privileges via a negative buflen argument which triggers a heap-based buffer overflow.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://cturt.github.io/sendmsg.html http://www.securitytracker.com/id/1035906 https://security.FreeBSD.org/advisories/FreeBSD-SA-16:19.sendmsg.asc
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: