CVE-2006-2413

NameCVE-2006-2413
DescriptionGNUnet before SVN revision 2781 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an empty UDP datagram, possibly involving FIONREAD errors.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs368159

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
gnunet (PTS)buster0.10.1-5.1fixed
bullseye0.13.1-2fixed
bookworm0.19.3-2fixed
trixie0.20.0-4fixed
sid0.20.0-4.1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
gnunetsourcesarge(not affected)
gnunetsource(unstable)0.7.0e-1medium368159

Notes

[sarge] - gnunet <not-affected> (according to maintainer)

Search for package or bug name: Reporting problems