First published: Tue Jan 22 2008(Updated: )
OpenBSD 4.2 allows local users to cause a denial of service (kernel panic) by calling the SIOCGIFRTLABEL IOCTL on an interface that does not have a route label, which triggers a NULL pointer dereference when the return value from the rtlabel_id2name function is not checked.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenBSD | =4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0384 has a severity rating that indicates it can lead to a denial of service through a kernel panic.
To fix CVE-2008-0384, you should upgrade OpenBSD to a patched version that addresses the vulnerability.
CVE-2008-0384 affects local users of OpenBSD 4.2, specifically when calling the SIOCGIFRTLABEL IOCTL.
The impact of CVE-2008-0384 is the potential for a kernel panic, which disrupts system operations.
CVE-2008-0384 was disclosed in early 2008, allowing users to be aware of the vulnerability and its implications.