PT-2007-2782 · Linux+1 · Linux Kernel+1

Publicado

2007-03-10

·

Atualizado

2017-10-11

·

CVE-2007-1388

CVSS v2.0

4.4

Média

VetorAV:L/AC:M/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.20
Description The issue allows local users to cause a denial of service by calling setsockopt with the IPV6 RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.
Recommendations For Linux kernel versions prior to 2.6.20, update to version 2.6.20 or later to resolve the issue.

Exploit

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-1388
RHSA-2007:0169
RHSA-2007_0169

Produtos afetados

Linux Kernel
Red Hat