PT-2006-7255 · Netbsd · Netbsd

Publicado

2006-12-20

·

Atualizado

2011-07-25

·

CVE-2006-6653

CVSS v2.0

1.7

Baixa

VetorAV:L/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions NetBSD versions prior to 20061023 NetBSD 3.0 and 3.0.1 versions prior to 20061024 NetBSD 2.x versions prior to 20061029
Description The issue allows local users to cause a denial of service via an invalid name or namelen parameter, resulting in a socket never being closed, also known as a "dangling socket".
Recommendations For NetBSD versions prior to 20061023, update to a version after 20061023. For NetBSD 3.0 and 3.0.1 versions prior to 20061024, update to a version after 20061024. For NetBSD 2.x versions prior to 20061029, update to a version after 20061029.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-6653

Produtos afetados

Netbsd