Description:
BSD contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the exec system call fails to check the text size and data size in a header against the actual size of a file. If a malicious user creates an unreasonably large datasize, a core dump will result. This will disclose memory information resulting in a loss of confidentiality.