CVE-2007-1357
Linux Kernel < 2.6.20.4 - Denial of Service via AppleTalk Frame Length Mismatch
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1357. PoCs published by Jean Delvare.
AI-analyzed exploit summary This exploit demonstrates a denial-of-service vulnerability in the Linux kernel by sending malformed AppleTalk frames. The malformed packet length field triggers a crash in vulnerable kernels prior to version 2.6.20.5.
Description
The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which triggers a BUG_ON call when an attempt is made to perform a checksum.
Exploits (1)
This exploit demonstrates a denial-of-service vulnerability in the Linux kernel by sending malformed AppleTalk frames. The malformed packet length field triggers a crash in vulnerable kernels prior to version 2.6.20.5.