CVE-2012-2744

Linux Kernel < 2.6.34 - Denial of Service via IPv6 Fragmented Packet Handling

Title source: llm
STIX 2.1

Description

net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.

References (9)

Core 9
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=833402
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/54367
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1027235
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2012-1064.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/49928
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2012-1148.html

Scores

EPSS 0.0443
EPSS Percentile 90.5%

Details

Status published
Products (21)
linux/linux_kernel 2.6.33
linux/linux_kernel 2.6.33.1
linux/linux_kernel 2.6.33.2
linux/linux_kernel 2.6.33.3
linux/linux_kernel 2.6.33.4
linux/linux_kernel 2.6.33.5
linux/linux_kernel 2.6.33.6
linux/linux_kernel 2.6.33.7
linux/linux_kernel 2.6.33.8
linux/linux_kernel 2.6.33.9
... and 11 more
Published Aug 09, 2012
Tracked Since Feb 18, 2026