4.9
CVSSv2

CVE-2009-1935

Published: 18/06/2009 Updated: 17/08/2017
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Integer overflow in the pipe_build_write_buffer function (sys/kern/sys_pipe.c) in the direct write optimization feature in the pipe implementation in FreeBSD 7.1 up to and including 7.2 and 6.3 up to and including 6.4 allows local users to bypass virtual-to-physical address lookups and read sensitive information in memory pages via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 7.1

freebsd freebsd 7.2

freebsd freebsd 6.4

freebsd freebsd 6.3

freebsd freebsd 6.3_releng