Multiple integer signedness errors in the (1) __get_argv and (2) __get_compat_argv functions in tapset/aux_syscalls.stp in SystemTap 1.1 allow local users to cause a denial of service (script crash, or system crash or hang) via a process with a large number of arguments, leading to a buffer overflow.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2010-02-08T20:00:00

Updated: 2024-08-07T00:45:12.299Z

Reserved: 2010-01-27T00:00:00

Link: CVE-2010-0411

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-02-08T20:30:01.310

Modified: 2024-11-21T01:12:10.060

Link: CVE-2010-0411

cve-icon Redhat

Severity : Moderate

Publid Date: 2010-01-29T00:00:00Z

Links: CVE-2010-0411 - Bugzilla