Integer signedness error in the i386_set_ldt call in FreeBSD 5.5, and possibly earlier versions down to 5.2, allows local users to cause a denial of service (crash) via unspecified arguments that use negative signed integers to cause the bzero function to be called with a large length parameter, a different vulnerability than CVE-2006-4172.
2006-09-26T02:07:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 4.9 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:N/A:C
3.9
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | freebsd | freebsd | ≤ 5.5 | Yes |
Operating System | freebsd | freebsd | 5.2 | Yes |
Operating System | freebsd | freebsd | 5.2.1 | Yes |
Operating System | freebsd | freebsd | 5.3 | Yes |
Operating System | freebsd | freebsd | 5.4 | Yes |