CVE-2005-3848

Linux Kernel - Denial of Service

Title source: rule

Description

Memory leak in the icmp_push_reply function in Linux 2.6 before 2.6.12.6 and 2.6.13 allows remote attackers to cause a denial of service (memory consumption) via a large number of crafted packets that cause the ip_append_data function to fail, aka "DST leak in icmp_push_reply."

References (20)

Scores

EPSS 0.0670
EPSS Percentile 91.1%

Classification

Status draft

Affected Products (32)

linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 17 more

Timeline

Published Nov 27, 2005
Tracked Since Feb 18, 2026