2.1
CVSSv2

CVE-2006-6013

Published: 21/11/2006 Updated: 17/10/2018
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Integer signedness error in the fw_ioctl (FW_IOCTL) function in the FireWire (IEEE-1394) drivers (dev/firewire/fwdev.c) in various BSD kernels, including DragonFlyBSD, FreeBSD 5.5, MidnightBSD 0.1-CURRENT prior to 20061115, NetBSD-current prior to 20061116, NetBSD-4 prior to 20061203, and TrustedBSD, allows local users to read arbitrary memory contents via certain negative values of crom_buf->len in an FW_GCROM command. NOTE: this issue has been labeled as an integer overflow, but it is more like an integer signedness error.

Vulnerable Product Search on Vulmon Subscribe to Product

trustedbsd trustedbsd

dragonflybsd dragonflybsd

freebsd freebsd 5.5

midnightbsd midnightbsd 0.1-current

netbsd netbsd 2.0.4