VYPR
High severity7.0NVD Advisory· Published Dec 14, 2016· Updated May 6, 2026

CVE-2016-9035

CVE-2016-9035

Description

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ADD_ENTRIES when dealing with native file systems. An attacker can craft an input that can cause a buffer overflow in the path variable leading to an out of bounds memory access and could result in potential privilege escalation. This vulnerability is distinct from CVE-2016-9033.

Affected products

2
  • Joyent/Smartosv52 versions
    OS 20161110T013148Z+ 1 more
    • (no CPE)range: OS 20161110T013148Z
    • cpe:2.3:o:joyent:smartos:20161110t013148z:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.