First published: Mon May 29 2000(Updated: )
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =3.1 | |
FreeBSD Kernel | =2.2.5 | |
NetBSD current | =1.4.2 | |
NetBSD current | =1.4.2 | |
FreeBSD Kernel | =2.2.2 | |
NetBSD current | =1.4.2 | |
FreeBSD Kernel | =2.2.3 | |
FreeBSD Kernel | =2.0.5 | |
FreeBSD Kernel | =1.1.5.1 | |
NetBSD current | =1.4.2 | |
NetBSD current | =1.4.1 | |
FreeBSD Kernel | =2.2.8 | |
FreeBSD Kernel | =2.1.6.1 | |
FreeBSD Kernel | =2.2 | |
FreeBSD Kernel | =3.0 | |
FreeBSD Kernel | =3.2 | |
FreeBSD Kernel | =2.2.4 | |
FreeBSD Kernel | =2.1.0 | |
FreeBSD Kernel | =2.2.6 | |
FreeBSD Kernel | =2.1.6 | |
FreeBSD Kernel | =2.1.7.1 | |
FreeBSD Kernel | =3.3 | |
FreeBSD Kernel | =4.0 | |
FreeBSD Kernel | =3.4 | |
FreeBSD Kernel | =5.0-alpha | |
NetBSD current | =1.4.1 | |
FreeBSD Kernel | =5.0 | |
FreeBSD Kernel | =2.1.5 | |
FreeBSD Kernel | =4.0-alpha | |
NetBSD current | =1.4.1 | |
FreeBSD Kernel | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0461 is classified as a denial of service vulnerability.
To mitigate CVE-2000-0461, consider upgrading to a version of FreeBSD or NetBSD that does not support the semconfig system call.
CVE-2000-0461 affects multiple FreeBSD versions including 1.1.5.1, 2.0, 2.1.x, 2.2.x, and 3.x.
CVE-2000-0461 can only be exploited by local users, not remote attackers.
CVE-2000-0461 impacts FreeBSD and NetBSD systems that support the semconfig system call.