First published: Mon Feb 02 2015(Updated: )
Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denial of service (crash) and possibly gain privileges via a negative value in a VT_WAITACTIVE ioctl call, which triggers an array index error and out-of-bounds kernel memory access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0998 is considered a high severity vulnerability due to its potential to cause a denial of service and escalate privileges.
To fix CVE-2014-0998, ensure you upgrade to FreeBSD version 10.1 p6 or later.
CVE-2014-0998 affects local users of FreeBSD versions 9.3 before p10 and 10.1 before p6.
CVE-2014-0998 is an integer signedness error that can lead to an array index error in the vt console driver.
CVE-2014-0998 requires local access to the system, making it not exploitable remotely.