PT-2006-7255 · Netbsd · Netbsd
Published
2006-12-20
·
Updated
2011-07-25
·
CVE-2006-6653
CVSS v2.0
1.7
Low
| Vector | AV:L/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
NetBSD versions prior to 20061023
NetBSD 3.0 and 3.0.1 versions prior to 20061024
NetBSD 2.x versions prior to 20061029
Description
The issue allows local users to cause a denial of service via an invalid
name or namelen parameter, resulting in a socket never being closed, also known as a "dangling socket".Recommendations
For NetBSD versions prior to 20061023, update to a version after 20061023.
For NetBSD 3.0 and 3.0.1 versions prior to 20061024, update to a version after 20061024.
For NetBSD 2.x versions prior to 20061029, update to a version after 20061029.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Netbsd