|
|
| |
|
| |
kernel: arbitrary code execution
| Package(s): | kernel |
CVE #(s): | CVE-2009-1385
|
| Created: | February 3, 2010 |
Updated: | February 3, 2010 |
| Description: |
From the Red Hat advisory:
A flaw was found in the Intel PRO/1000 Linux driver (e1000) in the Linux
kernel. Frames with sizes near the MTU of an interface may be split across
multiple hardware receive descriptors. Receipt of such a frame could leak
through a validation check, leading to a corruption of the length check. A
remote attacker could use this flaw to send a specially-crafted packet that
would cause a denial of service or code execution. (CVE-2009-1385,
Important)
|
| Alerts: |
|
( Log in to post comments)
|
|
|