CVE-2009-2649
MEDIUM 4.7EPSS 0.8%
The IATA (ata) driver in FreeBSD 6.0 and 8.0, when read access to /dev is available, allows local users to cause a denial of service (kernel panic) via a certain IOCTL request with a large count, which triggers a malloc call with a large value.
- CVSS v2.0
- 4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C - EPSS
- 0.78% chance of exploitation in the next 30 days, 54th percentile
- Published
- 2009-07-30
- Updated
- 2024-08-07