Lucene search

K
cve[email protected]CVE-2009-2903
HistorySep 15, 2009 - 10:30 p.m.

CVE-2009-2903

2009-09-1522:30:00
CWE-772
web.nvd.nist.gov
62
cve-2009-2903
memory leak
appletalk subsystem
linux kernel
denial of service
nvd

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

6.6 Medium

AI Score

Confidence

High

0.028 Low

EPSS

Percentile

90.7%

Memory leak in the appletalk subsystem in the Linux kernel 2.4.x through 2.4.37.6 and 2.6.x through 2.6.31, when the appletalk and ipddp modules are loaded but the ipddp"N" device is not found, allows remote attackers to cause a denial of service (memory consumption) via IP-DDP datagrams.

Affected configurations

NVD
Node
linuxlinux_kernelRange2.4.0–2.4.37.6
OR
linuxlinux_kernelRange2.6.0–2.6.31
Node
suselinux_enterprise_debuginfoMatch10sp2
OR
suselinux_enterprise_debuginfoMatch10sp3
OR
suselinux_enterprise_desktopMatch10sp2
OR
suselinux_enterprise_desktopMatch10sp3
OR
suselinux_enterprise_serverMatch9
OR
suselinux_enterprise_serverMatch10sp2
OR
suselinux_enterprise_serverMatch10sp3
OR
suselinux_enterprise_software_development_kitMatch10sp2
OR
suselinux_enterprise_software_development_kitMatch10sp3
Node
canonicalubuntu_linuxMatch6.06
OR
canonicalubuntu_linuxMatch8.04-
OR
canonicalubuntu_linuxMatch8.10
OR
canonicalubuntu_linuxMatch9.04

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

6.6 Medium

AI Score

Confidence

High

0.028 Low

EPSS

Percentile

90.7%