First published: Wed Jul 25 2012(Updated: )
The ipalloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD does not properly allocate memory, which makes it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, related to "integer rounding and overflow" errors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =6.4 | |
NetBSD current |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-6754 is typically considered to be medium, as it can lead to memory-related attacks like buffer overflows.
To fix CVE-2007-6754, upgrade to the latest versions of FreeBSD or NetBSD that patch this vulnerability.
CVE-2007-6754 can lead to buffer overflow attacks and other memory-related vulnerabilities due to improper memory allocation.
CVE-2007-6754 affects FreeBSD 6.4 and various versions of NetBSD.
There are no specific workarounds for CVE-2007-6754 outside of upgrading the affected software to a patched version.