Skip to main content

CVE-2006-4516

Severity Medium
Score 4.9/10

Summary

Integer signedness error in FreeBSD 6.0-RELEASE allows local users to cause a denial of service (memory corruption and kernel panic) via a PT_LWPINFO ptrace command with a large negative data value that satisfies a signed maximum value check but is used in an unsigned copyout function call.

  • LOW
  • LOCAL
  • NONE
  • NONE
  • NONE
  • COMPLETE

References

Advisory Timeline

  • Published