Secunia Logo
 
CVE Reference: CVE-2007-1357
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-1357

Description:
The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which triggers a BUG_ON call when an attempt is made to perform a checksum.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-464-1

SUSE
  http://www.novell.com/linux/security/advisories/2007_43_kernel.html
  http://lists.suse.com/archive/suse-security-announce/2007-May/0001.html
  http://www.novell.com/linux/security/advisories/2007_30_kernel.html
  http://www.novell.com/linux/security/advisories/2007_35_kernel.html

SAID
  Secunia Advisory: SA25099
  Secunia Advisory: SA25392
  Secunia Advisory: SA24793
  Secunia Advisory: SA24901
  Secunia Advisory: SA25078
  Secunia Advisory: SA25683
  Secunia Advisory: SA25714
  Secunia Advisory: SA25691
  Secunia Advisory: SA25961
  Secunia Advisory: SA25226

DEBIAN
  http://www.debian.org/security/2007/dsa-1304
  http://www.debian.org/security/2007/dsa-1286

CONFIRM
  http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20.5

BUGTRAQ
  http://www.securityfocus.com/archive/1/471457

BID
  23376


Return to the previous page.