VYPR
Unrated severityNVD Advisory· Published Dec 26, 2006· Updated Jun 16, 2026

CVE-2006-6730

CVE-2006-6730

Description

OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by replacing the System Management Mode (SMM) handler via a write to an SMRAM address within /dev/xf86 (aka the video card memory-mapped I/O range), and then launching the new handler via a System Management Interrupt (SMI), as demonstrated by a write to Programmed I/O port 0xB2.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • NetBSD/NetBSD2 versions
    cpe:2.3:o:netbsd:netbsd:2.0.4:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:netbsd:netbsd:2.0.4:*:*:*:*:*:*:*
    • (no CPE)
  • OpenBSD/OpenBSD2 versions
    cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.