CVE-2006-4172

FreeBSD < 5.5 - Denial of Service via i386_set_ldt Integer Overflow

Title source: llm
STIX 2.1

Description

Integer overflow vulnerability in the i386_set_ldt call in FreeBSD 5.5, and possibly earlier versions down to 5.2, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-4178.

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/29132
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/446945/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016926
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22064
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20158
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016928
Various Sources third-party-advisory x_refsource_idefense
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=414
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2006-09/0376.html

Scores

EPSS 0.0006
EPSS Percentile 18.8%

Details

Status published
Products (5)
freebsd/freebsd 5.2
freebsd/freebsd 5.2.1
freebsd/freebsd 5.3
freebsd/freebsd 5.4
freebsd/freebsd < 5.5
Published Sep 26, 2006
Tracked Since Feb 18, 2026