[原文]The elf_load_file function in NetBSD 2.0 through 3.0 allows local users to cause a denial of service (kernel crash) via an ELF interpreter that does not have a PT_LOAD section in its header, which triggers a null dereference.
NetBSD elf_load_file() Malformed ELF Interpreter Local DoS
Local Access Required
Denial of Service,
Loss of Availability
NetBSD contains a flaw that may allow a local denial of service. The issue is triggered when the elf_load_file() function dereferences a NULL pointer. The NULL pointer dereference occurs when a malicious user creates an elf interpreter that lacks a PT_LOAD section in its header. This will result in loss of availability for the platform.
Obtain fixed kernel sources, rebuild and install the new kernel, and reboot the system.
The fixed source may be obtained from the NetBSD CVS repository.