CVE-2006-5824

FreeBSD 6.1 - Denial of Service via ffs_rdextattr Integer Overflow

Title source: llm
STIX 2.1

Description

Integer overflow in the ffs_rdextattr function in FreeBSD 6.1 allows local users to cause a denial of service (kernel panic) and trigger a heap-based buffer overflow via a crafted UFS filesystem, a different vulnerability than CVE-2006-5679. NOTE: a third party states that this issue does not cross privilege boundaries in FreeBSD because only root may mount a filesystem.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/30144

Scores

EPSS 0.0005
EPSS Percentile 16.8%

Details

Status published
Products (1)
freebsd/freebsd 6.1
Published Nov 09, 2006
Tracked Since Feb 18, 2026