CVE-2007-4567
Published: 21 December 2007
The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.22 does not properly validate the hop-by-hop IPv6 extended header, which allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted IPv6 packet.
Notes
Author | Note |
---|---|
kees | introduced in 2.6.20, fixed in 2.6.22 |
Priority
Status
Package | Release | Status |
---|---|---|
linux-source-2.6.15 Launchpad, Ubuntu, Debian |
dapper |
Not vulnerable
|
upstream |
Needs triage
|
|
linux-source-2.6.17 Launchpad, Ubuntu, Debian |
edgy |
Not vulnerable
|
upstream |
Needs triage
|
|
linux-source-2.6.20 Launchpad, Ubuntu, Debian |
feisty |
Released
(2.6.20-16.33)
|
upstream |
Released
(2.6.22.5)
|
|
linux-source-2.6.22 Launchpad, Ubuntu, Debian |
gutsy |
Not vulnerable
|
upstream |
Needs triage
|