Back to search
CVE-2011-4326
Published: May 17, 2012
Modified: Aug 7, 2024
PUBLISHED
Description
The udp6_ufo_fragment function in net/ipv6/udp.c in the Linux kernel before 2.6.39, when a certain UDP Fragmentation Offload (UFO) configuration is enabled, allows remote attackers to cause a denial of service (system crash) by sending fragmented IPv6 UDP packets to a bridge device.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
50751
vdb-entry
x_refsource_BID
http://downloads.avaya.com/css/P8/documents/100156038
x_refsource_CONFIRM
[oss-security] 20111121 Re: CVE Request -- kernel: wrong headroom check in udp6_ufo_fragment()
mailing-list
x_refsource_MLIST
http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.39
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=682066
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=755584
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now