First published: Thu Jan 28 2010(Updated: )
Multiple integer signedness errors in the (1) __get_argv and (2) __get_compat_argv functions in tapset/aux_syscalls.stp in SystemTap 1.1 allow local users to cause a denial of service (script crash, or system crash or hang) via a process with a large number of arguments, leading to a buffer overflow.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Systemtap Systemtap | =1.1 | |
redhat/systemtap | <0:0.6.2-2.el4_8.1 | 0:0.6.2-2.el4_8.1 |
redhat/systemtap | <0:0.9.7-5.el5_4.3 | 0:0.9.7-5.el5_4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.