7.5
CVSSv2

CVE-2008-1391

Published: 27/03/2008 Updated: 11/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent malicious users to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 6.0

netbsd netbsd 4.0

freebsd freebsd 6.0_p5_release

freebsd freebsd 7.0

freebsd freebsd 7.0_beta4

freebsd freebsd 7.0_releng

Vendor Advisories

The GNU C library did not correctly handle certain mnt entries, strfmon arguments, and ELF program headers ...

Exploits

source: wwwsecurityfocuscom/bid/28479/info Multiple BSD platforms are prone to an integer-overflow weakness An attacker can exploit this issue through other applications such as PHP to execute arbitrary code within the context of the affected application Failed exploit attempts will result in a denial-of-service condition This issue ...