First published: Wed Dec 20 2006(Updated: )
Unspecified vulnerability in ptrace in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read kernel memory and obtain sensitive information via certain manipulations of a PT_LWPINFO request, which leads to a memory leak and information leak.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetBSD current | =2.1 | |
NetBSD current | =3.0.1 | |
NetBSD current | =3.0 | |
NetBSD current | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6656 is considered a high severity vulnerability due to its potential for local users to read sensitive kernel memory.
CVE-2006-6656 allows local users on affected NetBSD versions to manipulate a PT_LWPINFO request, leading to sensitive information leaks.
CVE-2006-6656 affects NetBSD versions 2.0, 2.1, 3.0, and 3.0.1 prior to specified updates in 2006.
To address CVE-2006-6656, update your NetBSD system to the latest patched version.
CVE-2006-6656 can be exploited by local users who have access to the affected NetBSD systems.