HomeFreeBSD

Due to invalid use of a signed intermediate value in the bounds checking

Description

Due to invalid use of a signed intermediate value in the bounds checking
during argument validity verification, unbound zero'ing of the process LDT
and adjacent memory can be initiated from usermode.

Submitted by: CORE Security
Patch by: kib
Security: SA-16:15

Details

Provenance
glebiusAuthored on
Parents
rS296955: o Fix OpenSSH xauth(1) command injection. [SA-16:14]
Branches
Unknown
Tags
Unknown