ZeroHour

CVE-2017-1000374

CVSS 3.0
9.8 critical
EPSS
3%p88
Published
()
Modified
Description

A flaw exists in NetBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution using certain setuid binaries. This affects NetBSD 7.1 and possibly earlier versions.

Vendors
netbsd
Products
netbsd
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.