PT-2006-6661 · Netbsd · Netbsd

Neil

·

Published

2006-11-21

·

Updated

2008-09-05

·

CVE-2006-6014

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NetBSD-current versions prior to 20061028
Description The issue is related to improper bounds checking of an unspecified userspace parameter in the ptrace system call during a PT DUMPCORE request. This allows local users to have an unknown impact.
Recommendations For versions prior to 20061028, consider updating to a version after 20061028 to resolve the issue. As a temporary workaround, restrict access to the ptrace system call to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6014

Affected Products

Netbsd