CVE-2006-5218: Integer Overflow
Integer overflow in the systracepreprepl function (STRIOCREPLACE) in systrace in OpenBSD 3.9 and NetBSD 3 allows local users to cause a denial of service (crash), gain privileges, or read arbitrary kernel memory via large numeric arguments to the systrace ioctl.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5218?
CVE-2006-5218 has a severity level that can potentially lead to a denial of service and privilege escalation.
How do I fix CVE-2006-5218?
To fix CVE-2006-5218, update your system to the latest version of OpenBSD or NetBSD that addresses this vulnerability.
Which systems are affected by CVE-2006-5218?
CVE-2006-5218 affects OpenBSD 3.8 and 3.9, as well as NetBSD 3.0.
What can attackers achieve by exploiting CVE-2006-5218?
By exploiting CVE-2006-5218, attackers can cause a system crash, gain higher privileges, or read arbitrary kernel memory.
Is CVE-2006-5218 a local or remote vulnerability?
CVE-2006-5218 is a local vulnerability that requires an attacker to have local user access to the system.