vendor:
OpenBSD
by:
Marco Peereboom
4.3
CVSS
MEDIUM
Application Crash
125
CWE
Product Name: OpenBSD
Affected Version From: All versions of OpenBSD
Affected Version To: All versions of OpenBSD
Patch Exists: NO
Related CWE: CVE-2001-1145
CPE: o:openbsd:openbsd
Platforms Tested: OpenBSD
2001
OpenBSD Application Crash Vulnerability
Under certain conditions, an application launched by a regular user on an OpenBSD system can cause a system crash. This occurs when the application attempts to pipe a NULL value, triggering a kernel fault and crashing the system. A malicious local user can exploit this vulnerability to deny service to legitimate users of the system.
Mitigation:
There is no known mitigation for this vulnerability. It is recommended to update to a patched version of OpenBSD.