Vulnerabilities > CVE-2006-6014 - Local Security vulnerability in Netbsd Current

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
netbsd

Summary

The NetBSD-current kernel before 20061028 does not properly perform bounds checking of an unspecified userspace parameter in the ptrace system call during a PT_DUMPCORE request, which allows local users to have an unknown impact. This vulnerability is addressed in the following product update: NetBSD, NetBSD, current 10/28/2006

Vulnerable Configurations

Part Description Count
OS
Netbsd
1