CVE-2006-0035

The netlink_rcv_skb function in af_netlink.c in Linux kernel 2.6.14 and 2.6.15 allows local users to cause a denial of service (infinite loop) via a nlmsg_len field of 0.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:2.6.14:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.15:*:*:*:*:*:*:*

History

21 Nov 2024, 00:05

Type Values Removed Values Added
References () http://secunia.com/advisories/18482 - Patch, Vendor Advisory () http://secunia.com/advisories/18482 - Patch, Vendor Advisory
References () http://securityreason.com/securityalert/388 - () http://securityreason.com/securityalert/388 -
References () http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ad8e4b75c8a7bed475d72ce09bf5267188621961 - () http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ad8e4b75c8a7bed475d72ce09bf5267188621961 -
References () http://www.securityfocus.com/bid/16414 - () http://www.securityfocus.com/bid/16414 -
References () http://www.trustix.org/errata/2006/0004 - Patch () http://www.trustix.org/errata/2006/0004 - Patch
References () http://www.vupen.com/english/advisories/2006/0220 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/0220 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24202 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24202 -

07 Nov 2023, 01:58

Type Values Removed Values Added
References
  • {'url': 'http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ad8e4b75c8a7bed475d72ce09bf5267188621961', 'name': 'http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ad8e4b75c8a7bed475d72ce09bf5267188621961', 'tags': ['Vendor Advisory'], 'refsource': 'CONFIRM'}
  • () http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ad8e4b75c8a7bed475d72ce09bf5267188621961 -

Information

Published : 2006-01-11 21:03

Updated : 2024-11-21 00:05


NVD link : CVE-2006-0035

Mitre link : CVE-2006-0035

CVE.ORG link : CVE-2006-0035


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-399

Resource Management Errors