PT-2015-5977 · Linux+5 · Linux Kernel+5

Vasyl Kaigorodov

·

Published

2015-04-06

·

Updated

2021-07-15

·

CVE-2015-2922

CVSS v2.0

3.3

Low

VectorAV:A/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.19.6
Description The issue is related to the Neighbor Discovery (ND) protocol implementation in the IPv6 stack of the Linux kernel. It allows remote attackers to reconfigure a hop-limit setting via a small hop limit value in a Router Advertisement (RA) message. This is due to a flaw in the ndisc router discovery function in net/ipv6/ndisc.c.
Recommendations For Linux kernel versions prior to 3.19.6, update to version 3.19.6 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1425
ALT-PU-2015-1849
CESA-2015_1221
CESA-2015_1534
CVE-2015-2922
DLA-246-1
DSA-3237-1
OPENSUSE-SU-2015_1382-1
OPENSUSE-SU-2016_0301-1
RHSA-2015:1221
RHSA-2015:1534
RHSA-2015:1564
RHSA-2015:1565
RHSA-2015_1221
RHSA-2015_1534
RHSA-2015_1565
SUSE-RU-2015:0621-1
SUSE-SU-2015:0581-1
SUSE-SU-2015:0736-1
SUSE-SU-2015:1071-1
SUSE-SU-2015:1174-1
SUSE-SU-2015:1224-1
SUSE-SU-2015:1376-1
SUSE-SU-2015:1478-1
USN-2585-1
USN-2586-1
USN-2587-1
USN-2588-1
USN-2589-1
USN-2590-1

Affected Products

Alt Linux
Centos
Linux Kernel
Red Hat
Suse
Ubuntu