verifiedexecioctl in verified_exec.c in NetBSD 2.0.2 calls NDINIT with UIO_USERSPACE rather than UID_SYSSPACE, which removes the functionality of the verified exec kernel subsystem and might allow local users to execute Trojan horse programs.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2006-04-13T10:00:00Z
Updated: 2024-09-16T19:30:13.562Z
Reserved: 2006-04-13T00:00:00Z
Link: CVE-2005-4779
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2005-12-31T05:00:00.000
Modified: 2008-09-05T20:57:48.640
Link: CVE-2005-4779
Redhat
No data.