diff options
author | feld <feld@FreeBSD.org> | 2016-10-26 01:56:09 +0800 |
---|---|---|
committer | feld <feld@FreeBSD.org> | 2016-10-26 01:56:09 +0800 |
commit | c5130173877a9f0979e6743afcc6791478c820a9 (patch) | |
tree | c20f742e442271d2374494fa2e4245a7e392b8ee /security | |
parent | dd22298386591b24be0c2053a85283682298f604 (diff) | |
download | freebsd-ports-gnome-c5130173877a9f0979e6743afcc6791478c820a9.tar.gz freebsd-ports-gnome-c5130173877a9f0979e6743afcc6791478c820a9.tar.zst freebsd-ports-gnome-c5130173877a9f0979e6743afcc6791478c820a9.zip |
Document revised FreeBSD-SA-16:15.sysarch
Diffstat (limited to 'security')
-rw-r--r-- | security/vuxml/vuln.xml | 17 |
1 files changed, 10 insertions, 7 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index aaf742ed27c1..3232dbb13c29 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -3099,9 +3099,11 @@ and CVE-2013-0155.</p> <affects> <package> <name>FreeBSD-kernel</name> - <range><ge>10.2</ge><lt>10.2_14</lt></range> - <range><ge>10.1</ge><lt>10.1_31</lt></range> - <range><ge>9.3</ge><lt>9.3_39</lt></range> + <range><ge>11.0</ge><lt>11.0_2</lt></range> + <range><ge>10.3</ge><lt>10.3_11</lt></range> + <range><ge>10.2</ge><lt>10.2_24</lt></range> + <range><ge>10.1</ge><lt>10.1_41</lt></range> + <range><ge>9.3</ge><lt>9.3_49</lt></range> </package> </affects> <description> @@ -3110,10 +3112,10 @@ and CVE-2013-0155.</p> <p>A special combination of sysarch(2) arguments, specify a request to uninstall a set of descriptors from the LDT. The start descriptor is cleared and the number of descriptors - are provided. Due to invalid use of a signed intermediate - value in the bounds checking during argument validity - verification, unbound zero'ing of the process LDT and - adjacent memory can be initiated from usermode.</p> + are provided. Due to lack of sufficient bounds checking + during argument validity verification, unbound zero'ing of + the process LDT and adjacent memory can be initiated from + usermode.</p> <h1>Impact:</h1> <p>This vulnerability could cause the kernel to panic. In addition it is possible to perform a local Denial of Service @@ -3127,6 +3129,7 @@ and CVE-2013-0155.</p> <dates> <discovery>2016-03-16</discovery> <entry>2016-08-11</entry> + <modified>2016-10-25</modified> </dates> </vuln> |