VYPR
High severity7.0NVD Advisory· Published Dec 14, 2016· Updated May 6, 2026

CVE-2016-9034

CVE-2016-9034

Description

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ADD_ENTRIES when dealing with 32-bit file systems. An attacker can craft an input that can cause a buffer overflow in the nm variable leading to an out of bounds memory access and could result in potential privilege escalation. This vulnerability is distinct from CVE-2016-9032.

Affected products

2
  • Joyent/Smartosv52 versions
    OS 20161110T013148Z+ 1 more
    • (no CPE)range: OS 20161110T013148Z
    • cpe:2.3:o:joyent:smartos:*:*:*:*:*:*:*:*range: <=20161110t013148z

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.