CVE-2006-7254

Related Vulnerabilities: CVE-2006-7254  

Impact: Moderate Public Date: 2019-03-31 CWE: CWE-400 Bugzilla: 1698738: CVE-2006-7254 glibc: Not closing unhadleable client sockets due to nscd daemon leads to DoS. The nscd daemon in the GNU C Library (glibc) before version 2.5 does not close incoming client sockets if they cannot be handled by the daemon, allowing local users to carry out a denial of service attack on the daemon.

The MITRE CVE dictionary describes this issue as:

The nscd daemon in the GNU C Library (glibc) before version 2.5 does not close incoming client sockets if they cannot be handled by the daemon, allowing local users to carry out a denial of service attack on the daemon.

Find out more about CVE-2006-7254 from the MITRE CVE dictionary dictionary and NIST NVD.

CVSS v3 metrics

NOTE: The following CVSS v3 metrics and score provided are preliminary and subject to review.

CVSS3 Base Score 5.5
CVSS3 Base Metrics CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity Impact None
Availability Impact High

Affected Packages State

Platform Package State
Red Hat Enterprise Linux 7 glibc Under investigation
Red Hat Enterprise Linux 6 glibc Under investigation
Red Hat Enterprise Linux 5 glibc Under investigation