VYPR
Unrated severityNVD Advisory· Published Dec 31, 2003· Updated Jun 16, 2026

CVE-2003-1289

CVE-2003-1289

Description

The iBCS2 system call translator for statfs in NetBSD 1.5 through 1.5.3 and FreeBSD 4 up to 4.8-RELEASE-p2 and 5 up to 5.1-RELEASE-p1 allows local users to read portions of kernel memory (memory disclosure) via a large length parameter, which copies additional kernel memory into userland memory.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • NetBSD/NetBSDinferred2 versions
    >=1.5,<=1.5.3+ 1 more
    • (no CPE)range: >=1.5,<=1.5.3
    • (no CPE)range: 1.5 through 1.5.3
  • FreeBSD/FreeBSDllm-fuzzy
    Range: 4 up to 4.8-RELEASE-p2, 5 up to 5.1-RELEASE-p1

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.