OpenBSD and NetBSD "printf(1)" Format String Parsing Denial of Service

13 November 2009
Bookmark and Share
OpenBSD and NetBSD are exposed to a denial of service vulnerability because they fail to properly parse format strings containing multiple widths or precisions to the "printf(1)" function. OpenBSD version 4.6 and NetBSD version 5.0.1 are affected by this issue.

Ref: http://securityreason.com/achievement_securityalert/69

09.45.10 - CVE: Not Available
Platform: BSD