CVE-2006-6657: Low severity NetBSD NetBSD vulnerability
Published Dec 20, 2006
·Updated
The ifclonelist function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.
Affected Software
4 affected components
NetBSD NetBSD=2.0
NetBSD NetBSD=2.1
NetBSD NetBSD=3.0
NetBSD NetBSD=3.0.1
Remediation
Patch Available
Event History
Dec 20, 2006
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
via NVD·02:28 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-6657?
CVE-2006-6657 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2006-6657?
To fix CVE-2006-6657, update your NetBSD installation to a version that is patched and no longer vulnerable.
3
Which versions of NetBSD are affected by CVE-2006-6657?
CVE-2006-6657 affects NetBSD versions 2.0, 2.1, 3.0, and 3.0.1 before the specified dates.
4
What type of attack does CVE-2006-6657 allow?
CVE-2006-6657 allows local users to read potentially sensitive, uninitialized stack memory.
5
What systems are impacted by CVE-2006-6657?
CVE-2006-6657 impacts systems running various versions of NetBSD prior to the provided updates.