PT-2007-2782 · Linux+1 · Linux Kernel+1

Published

2007-03-10

·

Updated

2017-10-11

·

CVE-2007-1388

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.20
Description The issue allows local users to cause a denial of service by calling setsockopt with the IPV6 RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.
Recommendations For Linux kernel versions prior to 2.6.20, update to version 2.6.20 or later to resolve the issue.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-1388
RHSA-2007:0169
RHSA-2007_0169

Affected Products

Linux Kernel
Red Hat