vendor:
MINIX 3.3.0
by:
nitr0us
7,8
CVSS
HIGH
Denial of Service
119
CWE
Product Name: MINIX 3.3.0
Affected Version From: 3.3.0
Affected Version To: 3.3.0
Patch Exists: Yes
Related CWE: N/A
CPE: o:minix:minix_3.3.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: MINIX 3.3.0 x86
2020
MINIX 3.3.0 Local Denial of Service
MINIX 3.3.0 is prone to local kernel panic due to malformed program headers in an ELF executable. Attached three PoCs that panicked the OS, and their modified fields.
Mitigation:
Update to the latest version of MINIX 3.3.0