Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-2412

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-2412
Last Modified 07 Mar 2011 09:36:09
Published 16 May 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-2412

Summary

The raydium_network_read function in network.c in Raydium SVN revision 312 and earlier allows remote attackers to cause a denial of service (application crash) via a large ID, which causes an invalid memory access (buffer over-read).

Vulnerable Systems

Application

  • Raydium Svn Revision 283

  • Raydium Svn Revision 284

  • Raydium Svn Revision 285

  • Raydium Svn Revision 286

  • Raydium Svn Revision 287

  • Raydium Svn Revision 288

  • Raydium Svn Revision 289

  • Raydium Svn Revision 290

  • Raydium Svn Revision 291

  • Raydium Svn Revision 292

  • Raydium Svn Revision 293

  • Raydium Svn Revision 294

  • Raydium Svn Revision 295

  • Raydium Svn Revision 296

  • Raydium Svn Revision 297

  • Raydium Svn Revision 298

  • Raydium Svn Revision 299

  • Raydium Svn Revision 300

  • Raydium Svn Revision 301

  • Raydium Svn Revision 302

  • Raydium Svn Revision 303

  • Raydium Svn Revision 304

  • Raydium Svn Revision 305

  • Raydium Svn Revision 306

  • Raydium Svn Revision 307

  • Raydium Svn Revision 308

  • Raydium Svn Revision 309

  • Raydium Svn Revision 310

  • Raydium Svn Revision 311

  • Raydium Svn Revision 312


References

VUPEN - ADV-2006-1808

BUGTRAQ - 20060512 Multiple vulnerabilities in Raydium rev 309

SECUNIA - 20097

MISC - http://aluigi.altervista.org/adv/raydiumx-adv.txt

XF - raydium-raydiumnetworkread-bo(26516)

BID - 17986

SREASON - 900


Last Updated: 27 May 2016 10:42:28