|
|||
Rule General Information |
---|
Release Date: | 2010-03-09 | |
Rule Name: | DOS Linux Kernel SCTP Chunkless Packet denial of service -1 | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to contain an invalid value that is later used to dereference a pointer. | |
Impact: | Remote code execution | |
Affected OS: | Others | |
Reference: | SecurityFocusBID:18755 CVE-2006-2934 |
|
Solutions |
---|
Update vendor's patch. |