Lucene search

K
prionPRIOn knowledge basePRION:CVE-2008-2476
HistoryOct 03, 2008 - 3:07 p.m.

Design/Logic Flaw

2008-10-0315:07:00
PRIOn knowledge base
www.prio-n.com
53

6.6 Medium

AI Score

Confidence

High

0.027 Low

EPSS

Percentile

90.6%

The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 FTOS before E7.7.1.1, (5) Juniper JUNOS, and (6) Wind River VxWorks 5.x through 6.4 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity) or read private network traffic via a spoofed message that modifies the Forward Information Base (FIB).

References

6.6 Medium

AI Score

Confidence

High

0.027 Low

EPSS

Percentile

90.6%