Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-2413

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-2413
Last Modified 07 Mar 2011 09:36:09
Published 16 May 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-2413

Summary

GNUnet before SVN revision 2781 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an empty UDP datagram, possibly involving FIONREAD errors.

Vulnerable Systems

Application

  • Gnunet 0.7.0

  • Gnunet 0.7.0a

  • Gnunet 0.7.0b

  • Gnunet 0.7.0c

  • Gnunet 0.7.0d


References

SECUNIA - 20096

CONFIRM - https://gnunet.org/svn/GNUnet/ChangeLog

VUPEN - ADV-2006-1799

BUGTRAQ - 20060512 Socket unreachable in GNUnet rev 2780

MISC - http://aluigi.altervista.org/adv/gnunetzero-adv.txt

XF - gnunet-udp-dos(26527)

BID - 17980

SREASON - 907


Last Updated: 27 May 2016 10:42:28