[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2010-1188Date: (C)2010-03-31   (M)2024-02-22


Use-after-free vulnerability in net/ipv4/tcp_input.c in the Linux kernel 2.6 before 2.6.20, when IPV6_RECVPKTINFO is set on a listening socket, allows remote attackers to cause a denial of service (kernel panic) via a SYN packet while the socket is in a listening (TCP_LISTEN) state, which is not properly handled and causes the skb structure to be freed.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.1
Exploit Score: 8.6
Impact Score: 6.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: NONE
Integrity: NONE
Availability: COMPLETE
  
Reference:
SECTRACK-1023992
BID-39016
SECUNIA-39652
RHSA-2010:0380
RHSA-2010:0394
RHSA-2010:0424
RHSA-2010:0439
RHSA-2010:0882
http://www.openwall.com/lists/oss-security/2010/03/29/1
http://git.kernel.org/linus/fb7e2399ec17f1004c0e0ccfd17439f8759ede01
http://support.avaya.com/css/P8/documents/100090459
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20
http://www.vmware.com/security/advisories/VMSA-2011-0009.html
oval:org.mitre.oval:def:9878

CPE    154
cpe:/o:linux:linux_kernel:2.6.18
cpe:/o:linux:linux_kernel:2.6.17
cpe:/o:linux:linux_kernel:2.6.16
cpe:/o:linux:linux_kernel:2.6.15
...
CWE    1
CWE-399
OVAL    6
oval:org.secpod.oval:def:500349
oval:org.secpod.oval:def:201808
oval:org.secpod.oval:def:201881
oval:org.secpod.oval:def:500318
...

© SecPod Technologies