PT-2010-2201 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2010-03-17

·

Updated

2023-02-13

·

CVE-2010-0437

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.27
Description The issue is related to the ip6 dst lookup tail function in the Linux kernel, which does not properly handle certain circumstances involving an IPv6 TUN network interface and a large number of neighbors. This can allow attackers to cause a denial of service, resulting in a NULL pointer dereference and OOPS, or possibly have other unspecified impacts.
Recommendations For Linux kernel versions prior to 2.6.27, update to version 2.6.27 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2010-0437
RHSA-2010:0147
RHSA-2010:0148
RHSA-2010:0149
RHSA-2010:0161
RHSA-2010_0147

Affected Products

Linux Kernel
Red Hat