|
|

CVE Reference: CVE-2007-3642 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2007-3642 |
|
|
Description: The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference. |
|
|
CVE Status: Candidate |
|
|
References: UBUNTU http://www.ubuntu.com/usn/usn-510-1 SAID Secunia Advisory: SA25955 Secunia Advisory: SA26450 Secunia Advisory: SA27212 MANDRIVA http://www.mandriva.com/security/advisories?name=MDKSA-2007:195 DEBIAN http://www.debian.org/security/2007/dsa-1356 CONFIRM http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20.15 http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.21.6 http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=25845b5155b55cd77e42655ec24161ba3feffa47 http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22 BID 24818 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |