VulnerabilityModified
CVE-2005-0637
The copy functions in locore.s such as copyout in OpenBSD 3.5 and 3.6, and possibly other BSD based operating systems, may allow attackers to exceed certain address boundaries and modify kernel memory.
MEDIUM 5.0EPSS 1.16%
Does this matter?
Lower severity and a low EPSS score (1.16%). Track it; it rarely justifies an emergency change on its own.
Description
The copy functions in locore.s such as copyout in OpenBSD 3.5 and 3.6, and possibly other BSD based operating systems, may allow attackers to exceed certain address boundaries and modify kernel memory.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 1.16% probability · 65th percentile
- CISA KEV
- Not listed
- Affected
- openbsd/openbsd
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/14432Patch, Vendor Advisory
- http://securitytracker.com/id?1013333Patch, Vendor Advisory
- http://www.openbsd.org/errata.html#copy
- http://www.openbsd.org/errata35.html#locorePatch
- http://www.securityfocus.com/bid/12825Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19531
- http://secunia.com/advisories/14432Patch, Vendor Advisory
- http://securitytracker.com/id?1013333Patch, Vendor Advisory
- http://www.openbsd.org/errata.html#copy
- http://www.openbsd.org/errata35.html#locorePatch
- http://www.securityfocus.com/bid/12825Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19531
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.