CVE-2017-1087
Last modified
CVE-2017-1087 is a vulnerability of currently unknown severity. In FreeBSD 10.x before 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24 named paths are globally scoped, meaning a process located in one jail can read and modify the content of POSIX shared memory objects created by a process in another jail or the host system. As a result, a malicious user that has access to a jailed system is able to abuse shared memory by injecting malicious content in the shared memory region. EPSS estimates a 0.41% chance of exploitation in the next 30 days.
Description
In FreeBSD 10.x before 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24 named paths are globally scoped, meaning a process located in one jail can read and modify the content of POSIX shared memory objects created by a process in another jail or the host system. As a result, a malicious user that has access to a jailed system is able to abuse shared memory by injecting malicious content in the shared memory region. This memory region might be executed by applications trusting the shared memory, like Squid. This issue could lead to a Denial of Service or local privilege escalation.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Freebsd | Freebsd | All versions |
References
- http://www.securityfocus.com/bid/101867Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039810Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/101867Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039810Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-1087?
How severe is CVE-2017-1087?
How do I fix CVE-2017-1087?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-10862jwt-scala 1.2.2 and earlier fails to verify token signatures…
- CVE-2017-10863Untrusted search path vulnerability in HIBUN Confidential Fi…
- CVE-2017-10864Untrusted search path vulnerability in Installer of HIBUN Co…
- CVE-2017-10865Untrusted search path vulnerability in HIBUN Confidential Fi…
- CVE-2017-10868H2O version 2.2.2 and earlier allows remote attackers to cau…7.5
- CVE-2017-10869Buffer overflow in H2O version 2.2.2 and earlier allows remo…
- CVE-2017-10870Memory corruption vulnerability in Rakuraku Hagaki (Rakuraku…
- CVE-2017-10871Buffer overflow in NTT DOCOMO Wi-Fi STATION L-02F Software v…
- CVE-2017-10872H2O version 2.2.3 and earlier allows remote attackers to cau…
- CVE-2017-10873OpenAM (Open Source Edition) allows an attacker to bypass au…8.1
- CVE-2017-10874PWR-Q200 does not use random values for source ports of DNS …
- CVE-2017-10875I-O DATA DEVICE LAN DISK Connect Ver2.02 and earlier allows …
Are you affected by CVE-2017-1087?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
