CVE
- Id
- 95859
- CVE No.
- CVE-2016-9039
- Status
- Candidate
- Description
- An exploitable denial of service exists in the the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ADD_ENTRIES. An attacker can cause a buffer to be allocated and never freed. When repeatedly exploited this will result in memory exhaustion, resulting in a full system denial of service.
- Phase
- Assigned (20161026)
- Votes
- None (candidate not yet proposed)
- Comments