PT-2012-1529 · Linux+2 · Linux Kernel+2

Eugene Teo

·

Published

2011-05-10

·

Updated

2023-02-13

·

CVE-2011-1573

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.34
Description The issue is related to the calculation of chunk lengths for INIT and INIT ACK chunks in the Linux kernel. When addip enable and auth enable are used, the amount of zero padding is not considered, allowing remote attackers to cause a denial of service via crafted packet data.
Recommendations For Linux kernel versions prior to 2.6.34, update to version 2.6.34 or later to resolve the issue.

Exploit

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2011-1573
RHSA-2011:0498
RHSA-2011:0927
RHSA-2011_0498
RHSA-2011_0927

Affected Products

Linux Kernel
Red Hat
Suse