Vulnerability Name:

CVE-2006-5649 (CCN-40583)

Assigned:2006-12-13
Published:2006-12-13
Updated:2008-09-05
Summary:Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (kernel panic) via unspecified vectors.
CVSS v3 Severity:6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:C)
3.4 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
4.9 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2006-5649

Source: CCN
Type: SA23361
Linux Kernel Various Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23361

Source: SECUNIA
Type: UNKNOWN
23370

Source: SECUNIA
Type: UNKNOWN
23384

Source: SECUNIA
Type: UNKNOWN
23395

Source: SECUNIA
Type: UNKNOWN
23474

Source: CCN
Type: The Linux Kernel Archives Web site
The Linux Kernel Archives

Source: SUSE
Type: UNKNOWN
SUSE-SA:2006:079

Source: CCN
Type: OSVDB ID: 31373
Linux PowerPC kernel Alignment Check Exception Handling DoS

Source: BID
Type: UNKNOWN
21523

Source: CCN
Type: BID-21523
Linux Kernel Multiple Vulnerabilities

Source: CCN
Type: USN-395-1
Linux kernel vulnerabilities

Source: UBUNTU
Type: Patch
USN-395-1

Source: DEBIAN
Type: UNKNOWN
DSA-1233

Source: DEBIAN
Type: UNKNOWN
DSA-1237

Source: XF
Type: UNKNOWN
linux-kernel-alignment-check-dos(40583)

Source: SUSE
Type: SUSE-SA:2006:079
Linux kernel security problems

Vulnerable Configuration:Configuration 1:
  • cpe:/o:ubuntu:ubuntu_linux:5.10:*:*:*:*:*:*:*
  • OR cpe:/o:ubuntu:ubuntu_linux:6.06_lts:*:*:*:*:*:*:*
  • OR cpe:/o:ubuntu:ubuntu_linux:6.10:*:powerpc:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:linux:linux_kernel:2.6.2:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.0:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.1:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.3:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.4:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.5:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.6:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.7:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:2.6.8:*:*:*:*:*:*:*
  • AND
  • cpe:/o:novell:linux_desktop:9:*:*:*:*:*:*:*
  • OR cpe:/a:novell:open_enterprise_server:*:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:6.06::lts:*:*:*:*:*
  • OR cpe:/o:suse:linux_enterprise_server:9:*:*:*:*:*:*:*
  • OR cpe:/a:novell:open_enterprise_server:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20065649
    V
    CVE-2006-5649
    2015-11-16
    BACK
    ubuntu ubuntu linux 5.10
    ubuntu ubuntu linux 6.06_lts
    ubuntu ubuntu linux 6.10
    linux linux kernel 2.6.2
    linux linux kernel 2.6.0
    linux linux kernel 2.6.1
    linux linux kernel 2.6.3
    linux linux kernel 2.6.4
    linux linux kernel 2.6.5
    linux linux kernel 2.6.6
    linux linux kernel 2.6.7
    linux linux kernel 2.6.8
    novell linux desktop 9
    novell open enterprise server *
    canonical ubuntu 6.06
    suse linux enterprise server 9
    novell open enterprise server *