Unrated severityNVD Advisory· Published Sep 11, 2008· Updated Apr 23, 2026
CVE-2008-2464
CVE-2008-2464
Description
The mld_input function in sys/netinet6/mld6.c in the kernel in NetBSD 4.0, FreeBSD, and KAME, when INET6 is enabled, allows remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ICMPv6 Multicast Listener Discovery (MLD) query with a certain Maximum Response Delay value.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- cert.fi/haavoittuvuudet/2008/advisory-netbsd.htmlnvdExploit
- www.kb.cert.org/vuls/id/817940nvdUS Government Resource
- cvsweb.netbsd.org/bsdweb.cgi/src/sys/netinet6/mld6.cnvd
- cvsweb.netbsd.org/bsdweb.cgi/src/sys/netinet6/mld6.c.diffnvd
- ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-011.txt.ascnvd
- securitytracker.com/idnvd
- www.freebsd.org/cgi/cvsweb.cgi/src/sys/netinet6/mld6.cnvd
- www.freebsd.org/cgi/cvsweb.cgi/src/sys/netinet6/mld6.c.diffnvd
- www.securityfocus.com/bid/31026nvd
News mentions
0No linked articles in our index yet.