Description
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code in 3.4 via a program with an invalid header that is not properly handled by (1) ibcs2_exec.c in the iBCS2 emulation (compat_ibcs2) or (2) exec_elf.c, which leads to a stack-based buffer overflow.
Exploits (2)
References (7)
Scores
EPSS
0.0044
EPSS Percentile
63.4%
Details
Status
published
Products (2)
openbsd/openbsd
3.3
openbsd/openbsd
3.4
Published
Dec 15, 2003
Tracked Since
Feb 18, 2026