A local overflow exists in OpenBSD and NetBSD. systrace fails to validate data passed to the systrace_preprepl function resulting in an integer overflow. With a specially crafted request, an attacker can cause a denial of service or read arbitrary kernel memory resulting in a loss of confidentiality and/or availability.
Classification
Location:
Local Access Required
Attack Type:
Denial of Service,
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Availability
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
Solution
For NetBSD, upgrade to the release indicated in the vendor advisory as it has been reported to fix this vulnerability.
OpenBSD has released a patch to address this vulnerability.