CVE-2003-1234

Integer overflow in the f_count counter in FreeBSD before 4.2 through 5.0 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via multiple calls to (1) fpathconf and (2) lseek, which do not properly decrement f_count through a call to fdrop.

Date published : 2005-11-16

http://www.securityfocus.com/bid/6524

http://www.securityfocus.com/archive/1/305308/30/26420/threaded