The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID.
| Software | From | Fixed in |
|---|---|---|
| sgi / irix | - | - |
| netbsd / netbsd | 2.0.4 | 2.0.4.x |
| bsd / bsd | 4.4 | 4.4.x |
| openbsd / openbsd | 2.1 | 2.1.x |
| bsd / bsd | - | - |
| freebsd / freebsd | 6.2-stable | 6.2-stable.x |