VYPR
Unrated severityNVD Advisory· Published Aug 27, 2003· Updated Jun 16, 2026

CVE-2003-0653

CVE-2003-0653

Description

The OSI networking kernel (sys/netiso) in NetBSD 1.6.1 and earlier does not use a BSD-required "PKTHDR" mbuf when sending certain error responses to the sender of an OSI packet, which allows remote attackers to cause a denial of service (kernel panic or crash) via certain OSI packets.

Affected products

7
  • NetBSD/NetBSD7 versions
    cpe:2.3:o:netbsd:netbsd:1.5:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:netbsd:netbsd:1.5:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:1.5.1:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:1.5.2:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:1.5.3:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:1.6:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:1.6.1:*:*:*:*:*:*:*
    • (no CPE)range: <=1.6.1

Patches

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.