Back to search
CVE-2011-1478
Published: Oct 23, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
The napi_reuse_skb function in net/core/dev.c in the Generic Receive Offload (GRO) implementation in the Linux kernel before 2.6.38 does not reset the values of certain structure members, which might allow remote attackers to cause a denial of service (NULL pointer dereference) via a malformed VLAN frame.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://mirror.anl.gov/pub/linux/kernel/v2.6/ChangeLog-2.6.38
x_refsource_CONFIRM
20111013 VMSA-2011-0012 VMware ESXi and ESX updates to third party libraries and ESX Service Console
mailing-list
x_refsource_BUGTRAQ
8480
third-party-advisory
x_refsource_SREASON
46397
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=691270
x_refsource_CONFIRM
[oss-security] 20110328 CVE-2011-1478 kernel: gro: reset dev and skb_iff on skb reuse
mailing-list
x_refsource_MLIST
http://www.vmware.com/security/advisories/VMSA-2011-0012.html
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now