CVE-2017-1000375 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 18.9% (pctl 97)
Patch early
A public exploit exists.
Description
NetBSD maps the run-time link-editor ld.so directly below the stack region, even if ASLR is enabled, this allows attackers to more easily manipulate memory leading to arbitrary code execution. This affects NetBSD 7.1 and possibly earlier versions.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 18.92% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2017-06-19 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| netbsd | netbsd |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | NetBSD - 'Stack Clash' (PoC) | 2017-06-28 |
References
→ the Explorer · watch your stack · NVD