PT-2014-5377 · Linux+2 · Linux Kernel+2

Published

2014-09-09

·

Updated

2023-02-13

·

CVE-2014-3535

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.36
Description The issue is related to the incorrect use of macros for netdev printk and its related logging implementation in the Linux kernel. This can be exploited by remote attackers to cause a denial of service, resulting in a NULL pointer dereference and system crash, by sending invalid packets to a VxLAN interface.
Recommendations For Linux kernel versions prior to 2.6.36, update to version 2.6.36 or later to resolve the issue.

Exploit

Fix

DoS

Buffer Overflow

Weakness Enumeration

Related Identifiers

CESA-2014_1167
CVE-2014-3535
RHSA-2014:1167
RHSA-2014:1168
RHSA-2014_1167

Affected Products

Centos
Linux Kernel
Red Hat