PT-2006-2805 · Netbsd · Netbsd
Published
2006-04-18
·
Updated
2017-07-20
·
CVE-2006-1814
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
NetBSD versions 1.6 through 3.0
Description
The issue allows local users to cause a denial of service, specifically memory exhaustion, by utilizing the sysctl system call to lock a large buffer into physical memory.
Recommendations
For NetBSD versions 1.6 through 3.0, consider restricting access to the sysctl system call to prevent local users from locking large buffers into physical memory.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netbsd