NetBSD 中存在一个由于 COMPAT_NETBSD32 兼容性层中 函数在成功路径上缺少 语句,从而导致释放后使用(use-after-free)和双重释放(double-free)的漏洞。在 64 位 NetBSD 系统上能够执行 32 位二进制的任何本地用户,都可以通过调用 并将 设置为介于 9 和 之间来触发该漏洞,导致内核访问已释放的 iovec 缓冲区,随后对同一内存分配进行第二次释放,从而引发内核恐慌(kernel panic)或内存损坏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The NetBSD Foundation | NetBSD | 8.0≤ 8.3 |
affected |
9.0< 9.5 |
affected | ||
10.0≤ 10.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The NetBSD Foundation | NetBSD | 8.0 ~ 8.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet