Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-2922

Опубликовано: 24 мар. 2015
Источник: redhat
CVSS2: 3.3
EPSS Низкий

Описание

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

It was found that the Linux kernel's TCP/IP protocol suite implementation for IPv6 allowed the Hop Limit value to be set to a smaller value than the default one. An attacker on a local network could use this flaw to prevent systems on that network from sending or receiving network packets.

Отчет

This issue affects the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2. Future kernel updates for Red Hat Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2 may address this issue. Red Hat Enterprise Linux 5 is now in Production 3 phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kernelAffected
Red Hat Enterprise Linux 6kernelFixedRHSA-2015:122114.07.2015
Red Hat Enterprise Linux 7kernel-rtFixedRHSA-2015:156505.08.2015
Red Hat Enterprise Linux 7kernelFixedRHSA-2015:153406.08.2015
Red Hat Enterprise MRG 2kernel-rtFixedRHSA-2015:156405.08.2015

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-454
https://bugzilla.redhat.com/show_bug.cgi?id=1203712kernel: denial of service (DoS) attack against IPv6 network stacks due to improper handling of Router Advertisements.

EPSS

Процентиль: 82%
0.01716
Низкий

3.3 Low

CVSS2

Связанные уязвимости

ubuntu
около 10 лет назад

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

nvd
около 10 лет назад

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

debian
около 10 лет назад

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbo ...

github
около 3 лет назад

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

oracle-oval
почти 10 лет назад

ELSA-2015-3050: Unbreakable Enterprise kernel security update (MODERATE)

EPSS

Процентиль: 82%
0.01716
Низкий

3.3 Low

CVSS2