LWN.net Logo

kernel: IGMP and scm_send vulnerabilities

Package(s):kernel CVE #(s):CAN-2004-1016 CAN-2004-1137
Created:December 14, 2004 Updated:January 4, 2005
Description: Paul Starzetz has discovered a new pair of kernel vulnerabilities. The IGMP code suffers from input validation and integer overflow vulnerabilities which could be remotely exploitable, and the socket function __scm_send() has a local denial of service vulnerability.
Alerts:
Fedora FEDORA-2004-582 2005-01-03
Fedora FEDORA-2004-581 2005-01-03
Ubuntu USN-47-1 2004-12-23
SuSE SUSE-SA:2004:044 2004-12-21
Trustix TSLSA-2004-0068 2004-01-19
Ubuntu USN-38-1 2004-12-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds