6.8
CVSSv2

CVE-2002-2180

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 6.8 | Impact Score: 10 | Exploitability Score: 3.1
VMScore: 605
Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The setitimer(2) system call in OpenBSD 2.0 up to and including 3.1 does not properly check certain arguments, which allows local users to write to kernel memory and possibly gain root privileges, possibly via an integer signedness error.

Vulnerable Product Search on Vulmon Subscribe to Product

openbsd openbsd 2.5

openbsd openbsd 2.6

openbsd openbsd 2.7

openbsd openbsd 2.8

openbsd openbsd 2.9

openbsd openbsd 2.0

openbsd openbsd 2.2

openbsd openbsd 2.4

openbsd openbsd 3.1

openbsd openbsd 2.1

openbsd openbsd 2.3

openbsd openbsd 3.0