CVE-2006-1814

NetBSD 1.6, 2.0, 2.1, 3.0 - Denial of Service via sysctl Memory Lock

Title source: llm
STIX 2.1

Description

NetBSD 1.6, 2.0, 2.1 and 3.0 allows local users to cause a denial of service (memory exhaustion) by using the sysctl system call to lock a large buffer into physical memory.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015909
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/24579
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25764
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17498
Vendor Advisory vendor-advisory x_refsource_netbsd
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-013.txt.asc
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19616

Scores

EPSS 0.0007
EPSS Percentile 21.5%

Details

Status published
Products (9)
netbsd/netbsd 1.6 (2 CPE variants)
netbsd/netbsd 1.6.1
netbsd/netbsd 1.6.2
netbsd/netbsd 2.0
netbsd/netbsd 2.0.1
netbsd/netbsd 2.0.2
netbsd/netbsd 2.0.3
netbsd/netbsd 2.1
netbsd/netbsd 3.0
Published Apr 18, 2006
Tracked Since Feb 18, 2026