Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5970

Опубликовано: 14 фев. 2017
Источник: debian

Описание

The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted system calls or possibly (2) IPv4 traffic with invalid IP options.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.9.10-1package

Примечания

  • Fixed by: https://github.com/torvalds/linux/commit/34b2cef20f19c87999fff3da4071e66937db9644 (v4.10-rc8)

  • Introduced by: https://github.com/torvalds/linux/commit/f84af32cbca70a3c6d30463dc08c7984af11c277 (v2.6.35-rc1)

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted system calls or possibly (2) IPv4 traffic with invalid IP options.

CVSS3: 7.5
redhat
больше 8 лет назад

The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted system calls or possibly (2) IPv4 traffic with invalid IP options.

CVSS3: 7.5
nvd
больше 8 лет назад

The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted system calls or possibly (2) IPv4 traffic with invalid IP options.

suse-cvrf
больше 8 лет назад

Security update for Linux Kernel Live Patch 12 for SLE 12 SP1

suse-cvrf
больше 8 лет назад

Security update for Linux Kernel Live Patch 3 for SLE 12 SP2