Linux · Linux Kernel · CVE-2009-0778
**Name of the Vulnerable Software and Affected Versions**
Linux kernel versions prior to 2.6.25
**Description**
The issue is related to the `icmp send` function in the Linux kernel, which does not properly manage the Protocol Independent Destination Cache (DST) when configured as a router with a REJECT route. This can be exploited by remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, resulting in an "rt cache leak."
**Recommendations**
For Linux kernel versions prior to 2.6.25, update to version 2.6.25 or later to resolve the issue.