| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.61702 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Security Advisory (FreeBSD-SA-08:10.nd6.asc) |
| Summary: | FreeBSD Security Advisory (FreeBSD-SA-08:10.nd6.asc) |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory FreeBSD-SA-08:10.nd6.asc IPv6 nodes use the Neighbor Discovery protocol to determine the link-layer address of other nodes, find routers, and maintain reachability information. The Neighbor Discovery protocol uses Neighbor Solicitation (ICMPv6 type 135) to query target nodes for their link-layer addresses. IPv6 routers may allow on-link IPv6 nodes to create and update the router's neighbor cache and forwarding information. A malicious IPv6 node sharing a common router but on a different physical segment from another node may be able to spoof Neighbor Discovery messages, allowing it to update router information for the victim node. Solution: Upgrade your system to the appropriate stable release or security branch dated after the correction date http://www.securityspace.com/smysecure/catid.html?in=FreeBSD-SA-08:10.nd6.asc |
| Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-2476 https://www.juniper.net/alerts/viewalert.jsp?actionBtn=Search&txtAlertNumber=PSN-2008-09-036&viewMode=view FreeBSD Security Advisory: FreeBSD-SA-08:10 http://security.freebsd.org/advisories/FreeBSD-SA-08:10.nd6.asc NETBSD Security Advisory: NetBSD-SA2008-013 ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-013.txt.asc OpenBSD Security Advisory: [4.2] 015: SECURITY FIX: October 2, 2008 http://www.openbsd.org/errata42.html#015_ndp OpenBSD Security Advisory: [4.3] 006: SECURITY FIX: October 2, 2008 http://www.openbsd.org/errata43.html#006_ndp CERT/CC vulnerability note: VU#472363 http://www.kb.cert.org/vuls/id/472363 BugTraq ID: 31529 http://www.securityfocus.com/bid/31529 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5670 http://secunia.com/advisories/32133 http://www.vupen.com/english/advisories/2008/2750 http://www.vupen.com/english/advisories/2008/2751 http://www.vupen.com/english/advisories/2008/2752 http://securitytracker.com/id?1020968 http://www.securitytracker.com/id?1021109 http://www.securitytracker.com/id?1021132 http://secunia.com/advisories/32112 http://secunia.com/advisories/32117 http://secunia.com/advisories/32116 http://secunia.com/advisories/32406 http://www.vupen.com/english/advisories/2009/0633 XForce ISS Database: multiple-vendors-ndp-dos(45601) http://xforce.iss.net/xforce/xfdb/45601 |
| Copyright | Copyright (c) 2008 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|