CVE-2017-1000372
A flaw exists in OpenBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution using setuid binaries such as /usr/bin/at. This affects OpenBSD 6.1 and possibly earlier versions.
- Openbsd
- ≤ 6.1
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 4.0% (90th percentile)
- NVD status
- Modified
- Published
- 2017-06-19
CVE-2017-1000372 at NVD
3 known exploits for CVE-2017-1000372
Proof-of-concept code and exploit modules indexed by Sploitus