Vulnerability Name: | CVE-2010-0561 (CCN-56077) | ||||||||
Assigned: | 2010-02-02 | ||||||||
Published: | 2010-02-02 | ||||||||
Updated: | 2010-02-09 | ||||||||
Summary: | Integer signedness error in NetBSD 4.0, 5.0, and NetBSD-current before 2010-01-21 allows local users to cause a denial of service (kernel panic) via a negative mixer index number being passed to (1) the azalia_query_devinfo function in the azalia audio driver (src/sys/dev/pci/azalia.c) or (2) the hdaudio_afg_query_devinfo function in the hdaudio audio driver (src/sys/dev/pci/hdaudio/hdaudio_afg.c). | ||||||||
CVSS v3 Severity: | 6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C) 3.7 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
3.5 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-189 | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2010-0561 Source: CCN Type: NetBSD-SA2010-003 azalia(4)/hdaudio(4) negative mixer index panic Source: NETBSD Type: Vendor Advisory NetBSD-SA2010-003 Source: OSVDB Type: UNKNOWN 62081 Source: OSVDB Type: UNKNOWN 62082 Source: CCN Type: SA38284 NetBSD "azalia" and "hdaudio" Drivers Array Indexing Vulnerabilities Source: SECUNIA Type: Vendor Advisory 38284 Source: CCN Type: SECTRACK ID: 1023539 NetBSD Integer Signedness Error in azalia/hdaudio Drivers Lets Local Users Deny Service Source: CCN Type: OSVDB ID: 62081 NetBSD src/sys/dev/pci/azalia.c azalia_query_devinfo() Function Local DoS Source: CCN Type: OSVDB ID: 62082 NetBSD src/sys/dev/pci/hdaudio/hdaudio_afg.c hdaudio_afg_query_devinfo() Function Local DoS Source: BID Type: UNKNOWN 38057 Source: CCN Type: BID-38057 NetBSD 'azalia(4)' and 'hdaudio(4)' Kernel Local Denial of Service Vulnerabilities Source: SECTRACK Type: UNKNOWN 1023539 Source: XF Type: UNKNOWN netbsd-azalia-hdaudio-dos(56077) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |