PT-2004-1524 · Freebsd+1 · Freebsd+1
Published
2004-04-06
·
Updated
2017-07-11
·
CVE-2004-0370
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
FreeBSD version 5.2
Description
The issue is related to the setsockopt call in the KAME Project IPv6 implementation. It does not properly handle certain IPv6 socket options, which could allow attackers to read kernel memory and cause a system panic.
Recommendations
For FreeBSD version 5.2, update to a version that includes a fix for the setsockopt call issue in the KAME Project IPv6 implementation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd
Kame Project Ipv6