The ktrace utility in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 9.3-BETA1 before p1 uses an incorrect page fault kernel trace entry size, which allows local users to obtain sensitive information from kernel memory via a kernel process trace.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2014-06-10 14:55
Updated : 2024-02-04 18:35
NVD link : CVE-2014-3873
Mitre link : CVE-2014-3873
CVE.ORG link : CVE-2014-3873
JSON object : View
Products Affected
freebsd
- freebsd
CWE
CWE-20
Improper Input Validation