CVE-2002-1490: Integer Overflow
NetBSD 1.4 through 1.6 beta allows local users to cause a denial of service (kernel panic) via a series of calls to the TIOCSCTTY ioctl, which causes an integer overflow in a structure counter and sets the counter to zero, which frees memory that is still in use by other processes.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1490?
CVE-2002-1490 is categorized as a denial of service vulnerability that can cause kernel panic.
How do I fix CVE-2002-1490?
To mitigate CVE-2002-1490, consider upgrading to a fixed version of NetBSD that addresses this vulnerability.
Who is affected by CVE-2002-1490?
CVE-2002-1490 affects local users running NetBSD versions 1.4 through 1.6 beta.
What types of devices are impacted by CVE-2002-1490?
Devices running NetBSD 1.4, 1.5, or 1.6 beta could be impacted by CVE-2002-1490.
What happens if CVE-2002-1490 is exploited?
Exploitation of CVE-2002-1490 can lead to an integer overflow and a subsequent kernel panic, causing system instability.