CVE-2006-6654: Medium severity NetBSD NetBSD vulnerability
The sendmsg function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029, when run on a 64-bit architecture, allows attackers to cause a denial of service (kernel panic) via an invalid msgcontrollen parameter to the sendit function.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6654?
CVE-2006-6654 is classified as a high severity vulnerability due to its potential to cause a kernel panic.
How do I fix CVE-2006-6654?
To mitigate CVE-2006-6654, update your NetBSD system to the latest patched version that addresses this vulnerability.
Who is affected by CVE-2006-6654?
CVE-2006-6654 affects NetBSD versions 2.0, 2.1, 3.0, and 3.0.1 running on 64-bit architectures.
What kind of attack does CVE-2006-6654 facilitate?
CVE-2006-6654 allows attackers to exploit an invalid msg_controllen parameter, leading to a denial of service.
When was CVE-2006-6654 disclosed?
CVE-2006-6654 was disclosed in October 2006, affecting specific versions of NetBSD.