Lucene search

K
cveMitreCVE-2006-4178
HistorySep 26, 2006 - 2:07 a.m.

CVE-2006-4178

2006-09-2602:07:00
mitre
web.nvd.nist.gov
24
cve-2006-4178
integer signedness error
i386_set_ldt
freebsd 5.5
denial of service

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

25.6%

Integer signedness error in the i386_set_ldt call in FreeBSD 5.5, and possibly earlier versions down to 5.2, allows local users to cause a denial of service (crash) via unspecified arguments that use negative signed integers to cause the bzero function to be called with a large length parameter, a different vulnerability than CVE-2006-4172.

Affected configurations

Nvd
Node
freebsdfreebsdRange5.5
OR
freebsdfreebsdMatch5.2
OR
freebsdfreebsdMatch5.2.1
OR
freebsdfreebsdMatch5.3
OR
freebsdfreebsdMatch5.4
VendorProductVersionCPE
freebsdfreebsd*cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*
freebsdfreebsd5.2cpe:2.3:o:freebsd:freebsd:5.2:*:*:*:*:*:*:*
freebsdfreebsd5.2.1cpe:2.3:o:freebsd:freebsd:5.2.1:*:*:*:*:*:*:*
freebsdfreebsd5.3cpe:2.3:o:freebsd:freebsd:5.3:*:*:*:*:*:*:*
freebsdfreebsd5.4cpe:2.3:o:freebsd:freebsd:5.4:*:*:*:*:*:*:*

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

25.6%