CyberSec.Space Logo
Back to CVE Browser

CVE-2009-0537

MEDIUM
4.9
CVSS Severity Score
EPSS Score0.0980%
EPSS Percentile10.39th
PublishedMar 9, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

Integer overflow in the fts_build function in fts.c in libc in (1) OpenBSD 4.4 and earlier and (2) Microsoft Interix 6.0 build 10.0.6030.0 allows context-dependent attackers to cause a denial of service (application crash) via a deep directory tree, related to the fts_level structure member, as demonstrated by (a) du, (b) rm, (c) chmod, and (d) chgrp on OpenBSD; and (e) SearchIndexer.exe on Vista Enterprise.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Interix

= 6.0
πŸ’»
Openbsd

Openbsd

<= 4.4
πŸ’»
Openbsd

Openbsd

= 2.0
πŸ’»
Openbsd

Openbsd

= 2.1
πŸ’»
Openbsd

Openbsd

= 2.2
πŸ’»
Openbsd

Openbsd

= 2.3
πŸ’»
Openbsd

Openbsd

= 2.4
πŸ’»
Openbsd

Openbsd

= 2.5
πŸ’»
Openbsd

Openbsd

= 2.6
πŸ’»
Openbsd

Openbsd

= 2.7
πŸ’»
Openbsd

Openbsd

= 2.8
πŸ’»
Openbsd

Openbsd

= 2.9
πŸ’»
Openbsd

Openbsd

= 3.0
πŸ’»
Openbsd

Openbsd

= 3.1
πŸ’»
Openbsd

Openbsd

= 3.2
πŸ’»
Openbsd

Openbsd

= 3.3
πŸ’»
Openbsd

Openbsd

= 3.4
πŸ’»
Openbsd

Openbsd

= 3.5
πŸ’»
Openbsd

Openbsd

= 3.6
πŸ’»
Openbsd

Openbsd

= 3.7
πŸ’»
Openbsd

Openbsd

= 3.8
πŸ’»
Openbsd

Openbsd

= 3.9
πŸ’»
Openbsd

Openbsd

= 4.0
πŸ’»
Openbsd

Openbsd

= 4.1
πŸ’»
Openbsd

Openbsd

= 4.2
πŸ’»
Openbsd

Openbsd

= 4.3

References & Advisories

Related Vulnerabilities