← Back

CVE-2009-2793

nvd nist
Published: Sep 18, 2009Modified: Apr 23, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 3.9 / Impact: 6.4
Source: NVD

Description

The kernel in NetBSD, probably 5.0.1 and earlier, on x86 platforms does not properly handle a pre-commit failure of the iret instruction, which might allow local users to gain privileges via vectors related to a tempEIP pseudocode variable that is outside of the code-segment limits.

Affected (30)

Products: Netbsd: Netbsd
1 product
Netbsd
Configuration A
30 vulnerable
Vulnerable SoftwareAffected Versions
Netbsd
Up to 5.0.1
Version 0.8
Version 0.9
Version 1.0
Version 1.1
Version 1.2.1
Version 1.2
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3
Version 1.5.1
Version 1.5.2
Version 1.5.3
Version 1.5
Version 1.6.1
Version 1.6.2
Version 1.6
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0
Version 2.1
Version 3.0.1
Version 3.0.2
Version 3.0
Version 3.1
Version 4.0.1
Version 4.0
Version 5.0

Related CWEs

Timeline

No history available yet.