PT-2006-2588 · Netbsd · Netbsd
Published
2006-04-03
·
Updated
2017-07-20
·
CVE-2006-1589
CVSS v2.0
4.9
Medium
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
NetBSD versions 2.0 through 3.0
Description:
The issue allows local users to cause a denial of service, resulting in a kernel crash. This is achieved by using an ELF interpreter without a PT LOAD section in its header, which triggers a null dereference in the
elf load file function.Recommendations:
For NetBSD versions 2.0 through 3.0, consider applying configuration changes to prevent the use of ELF interpreters without a PT LOAD section in their headers until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netbsd