Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-2723

Опубликовано: 27 июл. 2011
Источник: redhat
CVSS2: 5.7
EPSS Низкий

Описание

The skb_gro_header_slow function in include/linux/netdevice.h in the Linux kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled, resets certain fields in incorrect situations, which allows remote attackers to cause a denial of service (system crash) via crafted network traffic.

Отчет

This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 4 as it did not backport the upstream commit a5b1cf28 that introduced this issue. This has been addressed in Red Hat Enterprise Linux 5, 6, and Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2011-1386.html, https://rhn.redhat.com/errata/RHSA-2011-1350.html, and https://rhn.redhat.com/errata/RHSA-2012-0010.html.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4kernelNot affected
Red Hat Enterprise Linux 5kernelFixedRHSA-2011:132120.09.2011
Red Hat Enterprise Linux 5kernelFixedRHSA-2011:138620.10.2011
Red Hat Enterprise Linux 6kernelFixedRHSA-2011:135005.10.2011
Red Hat Enterprise MRG 2kernel-rtFixedRHSA-2012:001010.01.2012

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=726552kernel: gro: only reset frag0 when skb can be pulled

EPSS

Процентиль: 74%
0.00842
Низкий

5.7 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 14 лет назад

The skb_gro_header_slow function in include/linux/netdevice.h in the Linux kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled, resets certain fields in incorrect situations, which allows remote attackers to cause a denial of service (system crash) via crafted network traffic.

nvd
почти 14 лет назад

The skb_gro_header_slow function in include/linux/netdevice.h in the Linux kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled, resets certain fields in incorrect situations, which allows remote attackers to cause a denial of service (system crash) via crafted network traffic.

debian
почти 14 лет назад

The skb_gro_header_slow function in include/linux/netdevice.h in the L ...

github
около 3 лет назад

The skb_gro_header_slow function in include/linux/netdevice.h in the Linux kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled, resets certain fields in incorrect situations, which allows remote attackers to cause a denial of service (system crash) via crafted network traffic.

oracle-oval
больше 13 лет назад

ELSA-2011-2029: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 74%
0.00842
Низкий

5.7 Medium

CVSS2