2.1

CVE-2006-1588

The bridge ioctl (if_bridge code) in NetBSD 1.6 through 3.0 does not clear sensitive memory before copying ioctl results to the requesting process, which allows local users to obtain portions of kernel memory.

Data is provided by the National Vulnerability Database (NVD)
NetbsdNetbsd Version1.6
NetbsdNetbsd Version1.6 Updatebeta
NetbsdNetbsd Version1.6.1
NetbsdNetbsd Version1.6.2
NetbsdNetbsd Version2.0
NetbsdNetbsd Version2.0.1
NetbsdNetbsd Version2.0.2
NetbsdNetbsd Version2.0.3
NetbsdNetbsd Version2.1
NetbsdNetbsd Version3.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.203
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N