LWN.net Logo

kernel: denial of service

Package(s):kernel CVE #(s):CVE-2009-2903
Created:October 5, 2009 Updated:February 19, 2010
Description:

From the Red Hat bugzilla entry:

When the handle_ip_over_ddp() function checks for the "ipddp0" device and the device is not found, the function does not free the socket buffer structure (skb), leading to a memory leak. This only happens if you have the appletalk module loaded, but not the ipddp module, as this only happens when the "ipddp0" device does not exist.

Alerts:
SuSE SUSE-SA:2010:013 2010-02-18
SuSE SUSE-SA:2010:012 2010-02-15
SuSE SUSE-SA:2009:064 2009-12-22
SuSE SUSE-SA:2009:061 2009-12-14
Mandriva MDVSA-2009:329 2009-12-09
SuSE SUSE-SA:2009:060 2009-12-02
Ubuntu USN-852-1 2009-10-22
Mandriva MDVSA-2009:301 2009-11-20
Fedora FEDORA-2009-10639 2009-10-21
Debian DSA-1928-1 2009-11-05
Debian DSA-1915-1 2009-10-22
Fedora FEDORA-2009-10165 2009-10-03

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds