NetBSD contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious user passes an improper syscall argument to a translation function that performs unsafe operations. The issue is also triggered when a malicious user executes a specially-crafted foreign binary. This flaw can cause kernel traps resulting in a loss of availablity.
Classification
Location:
Local Access Required
Attack Type:
Denial of Service
Impact:
Loss of Availability
Exploit:
Exploit Public
Solution
Upgrade to version 2.0 or 1.6.2 after the correction date, as it has been reported to fix this vulnerability. In addition, NetBSD can be patched from files on CVS.