Lucene search

K
cve[email protected]CVE-2010-0006
HistoryJan 26, 2010 - 6:30 p.m.

CVE-2010-0006

2010-01-2618:30:01
CWE-476
web.nvd.nist.gov
32
10
cve-2010-0006
linux kernel
network namespaces
denial of service
null pointer dereference
ipv6

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.072

Percentile

94.1%

The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.32.4, when network namespaces are enabled, allows remote attackers to cause a denial of service (NULL pointer dereference) via an invalid IPv6 jumbogram, a related issue to CVE-2007-4567.

Affected configurations

NVD
Node
linuxlinux_kernelRange<2.6.32.4

Social References

More

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.072

Percentile

94.1%