CVE-2008-0352

Linux Kernel 2.6.20-2.6.21.1 - Denial of Service via IPv6 Jumbo Payload Hop-by-Hop Option

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-0352. PoCs published by Clemens Kurtenbach.

AI-analyzed exploit summary This PoC exploits a jumbo frame vulnerability in Linux kernels 2.6.20 to 2.6.21.1 by crafting a malformed IPv6 packet that triggers a kernel crash (DoS). The exploit sends a specially crafted Ethernet frame with an oversized payload to a target IPv6 address.

Description

The Linux kernel 2.6.20 through 2.6.21.1 allows remote attackers to cause a denial of service (panic) via a certain IPv6 packet, possibly involving the Jumbo Payload hop-by-hop option (jumbogram).

Exploits (1)

exploitdb WORKING POC VERIFIED
by Clemens Kurtenbach · cdoslinux
https://www.exploit-db.com/exploits/4893

This PoC exploits a jumbo frame vulnerability in Linux kernels 2.6.20 to 2.6.21.1 by crafting a malformed IPv6 packet that triggers a kernel crash (DoS). The exploit sends a specially crafted Ethernet frame with an oversized payload to a target IPv6 address.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Linux kernel 2.6.20 to 2.6.21.1
No auth needed
Prerequisites: Network access to the target · Target must be using IPv6 · Raw socket permissions
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Issue Tracking x_refsource_confirm
http://bugzilla.kernel.org/show_bug.cgi?id=8450
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4893
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/39643

Scores

EPSS 0.1045
EPSS Percentile 95.2%

Details

CWE
CWE-119
Status published
Products (19)
linux/linux_kernel 2.6.2 (4 CPE variants)
linux/linux_kernel 2.6.20 (2 CPE variants)
linux/linux_kernel 2.6.20.1
linux/linux_kernel 2.6.20.2
linux/linux_kernel 2.6.20.3
linux/linux_kernel 2.6.20.4
linux/linux_kernel 2.6.20.5
linux/linux_kernel 2.6.20.6
linux/linux_kernel 2.6.20.7
linux/linux_kernel 2.6.20.8
... and 9 more
Published Jan 18, 2008
Tracked Since Feb 18, 2026