CVE Database
/

CVE-2008-2476

Back to search

CVE-2008-2476

Published: Oct 3, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 FTOS before E7.7.1.1, (5) Juniper JUNOS, and (6) Wind River VxWorks 5.x through 6.4 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity) or read private network traffic via a spoofed message that modifies the Forward Information Base (FIB).

VendorProductVersions

n/a

n/a

affected
n/a

References

32406
third-party-advisory
x_refsource_SECUNIA
multiple-vendors-ndp-dos(45601)
vdb-entry
x_refsource_XF
[4.2] 015: SECURITY FIX: October 2, 2008
vendor-advisory
x_refsource_OPENBSD
ADV-2008-2751
vdb-entry
x_refsource_VUPEN
1021109
vdb-entry
x_refsource_SECTRACK
1020968
vdb-entry
x_refsource_SECTRACK
32133
third-party-advisory
x_refsource_SECUNIA
VU#472363
third-party-advisory
x_refsource_CERT-VN
32116
third-party-advisory
x_refsource_SECUNIA
1021132
vdb-entry
x_refsource_SECTRACK
ADV-2008-2750
vdb-entry
x_refsource_VUPEN
ADV-2008-2752
vdb-entry
x_refsource_VUPEN
31529
vdb-entry
x_refsource_BID
FreeBSD-SA-08:10
vendor-advisory
x_refsource_FREEBSD
[4.3] 006: SECURITY FIX: October 2, 2008
vendor-advisory
x_refsource_OPENBSD
32112
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:5670
vdb-entry
signature
x_refsource_OVAL
32117
third-party-advisory
x_refsource_SECUNIA
ADV-2009-0633
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now