VulnerabilityModified
CVE-2006-0380
A logic error in FreeBSD kernel 5.4-STABLE and 6.0 causes the kernel to calculate an incorrect buffer length, which causes more data to be copied to userland than intended, which could allow local users to read portions of kernel memory.
LOW 2.1EPSS 0.34%
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
A logic error in FreeBSD kernel 5.4-STABLE and 6.0 causes the kernel to calculate an incorrect buffer length, which causes more data to be copied to userland than intended, which could allow local users to read portions of kernel memory.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.34% probability · 27th percentile
- CISA KEV
- Not listed
- Affected
- freebsd/freebsd
- Source
- secteam@freebsd.org
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:06.kmem.asc
- http://secunia.com/advisories/18599Patch, Vendor Advisory
- http://securitytracker.com/id?1015541
- http://www.osvdb.org/22731
- http://www.securityfocus.com/bid/16373
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24340
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:06.kmem.asc
- http://secunia.com/advisories/18599Patch, Vendor Advisory
- http://securitytracker.com/id?1015541
- http://www.osvdb.org/22731
- http://www.securityfocus.com/bid/16373
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24340
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.