Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Mon, 21 Nov 2011 09:07:49 -0700
From: Kurt Seifried <kurt@...fried.org>
To: oss-security@...ts.openwall.com
Subject: Re: CVE Request -- kernel: wrong headroom check in udp6_ufo_fragment()

On Mon, Nov 21, 2011 at 8:54 AM, Petr Matousek <pmatouse@...hat.com> wrote:
> "A bug was found in the way headroom check was performed in
> udp6_ufo_fragment() function. A remote attacker could use this flaw to
> crash the system."
>
> Details:
> http://bugzilla.redhat.com/show_bug.cgi?id=755584#c1
>
> Upstream commit:
> a9cf73ea7ff78f52662c8658d93c226effbbedde
>
> References:
> http://bugzilla.redhat.com/show_bug.cgi?id=755584
> http://bugzilla.redhat.com/show_bug.cgi?id=682066
>
> Thanks,
> --
> Petr Matousek / Red Hat Security Response Team
>

Sorry having some laptop/email issues. Please use CVE-2011-4326 for this issue.

-- 
Kurt Seifried
kurt@...fried.org

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.