CVE-2006-0037

ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows local users to cause a denial of service (memory corruption or crash) via a crafted outbound packet that causes an incorrect offset to be calculated from pointer arithmetic when non-linear SKBs (socket buffers) are used.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:2.6.14:*:*:*:*:*:*:*

History

21 Nov 2024, 00:05

Type Values Removed Values Added
References () http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=03b9feca89366952ae5dfe4ad8107b1ece50b710 - () http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=03b9feca89366952ae5dfe4ad8107b1ece50b710 -
References () http://secunia.com/advisories/18482 - () http://secunia.com/advisories/18482 -
References () http://securityreason.com/securityalert/388 - () http://securityreason.com/securityalert/388 -
References () http://www.securityfocus.com/bid/16414 - () http://www.securityfocus.com/bid/16414 -
References () http://www.trustix.org/errata/2006/0004 - () http://www.trustix.org/errata/2006/0004 -
References () http://www.vupen.com/english/advisories/2006/0220 - () http://www.vupen.com/english/advisories/2006/0220 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24204 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24204 -

07 Nov 2023, 01:58

Type Values Removed Values Added
References
  • {'url': 'http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=03b9feca89366952ae5dfe4ad8107b1ece50b710', 'name': 'http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=03b9feca89366952ae5dfe4ad8107b1ece50b710', 'tags': [], 'refsource': 'CONFIRM'}
  • () http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=03b9feca89366952ae5dfe4ad8107b1ece50b710 -

Information

Published : 2006-01-23 22:03

Updated : 2024-11-21 00:05


NVD link : CVE-2006-0037

Mitre link : CVE-2006-0037

CVE.ORG link : CVE-2006-0037


JSON object : View

Products Affected

linux

  • linux_kernel