Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-0778

Опубликовано: 26 мар. 2008
Источник: redhat
CVSS2: 7.1
EPSS Низкий

Описание

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of an ICMP Host Unreachable message, which allows remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, related to an "rt_cache leak."

Отчет

This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 2.1, 3, 4, and Red Hat Enterprise MRG.

Дополнительная информация

Статус:

Important
Дефект:
CWE-772->CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=485163kernel: rt_cache leak leads to lack of network connectivity

EPSS

Процентиль: 81%
0.01482
Низкий

7.1 High

CVSS2

Связанные уязвимости

ubuntu
почти 17 лет назад

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of an ICMP Host Unreachable message, which allows remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, related to an "rt_cache leak."

nvd
почти 17 лет назад

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of an ICMP Host Unreachable message, which allows remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, related to an "rt_cache leak."

debian
почти 17 лет назад

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2 ...

github
почти 4 года назад

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of an ICMP Host Unreachable message, which allows remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, related to an "rt_cache leak."

oracle-oval
почти 17 лет назад

ELSA-2009-0326: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 81%
0.01482
Низкий

7.1 High

CVSS2