CVE-2007-6282

The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of service (crash) via a fragmented ESP packet in which the first fragment does not contain the entire ESP header and IV.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00006.html
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00000.html
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00002.html
http://marc.info/?l=linux-netdev&m=120372380411259&w=2 Exploit
http://secunia.com/advisories/30112
http://secunia.com/advisories/30294
http://secunia.com/advisories/30818
http://secunia.com/advisories/30890
http://secunia.com/advisories/30962
http://secunia.com/advisories/31107
http://secunia.com/advisories/31551
http://secunia.com/advisories/31628
http://www.debian.org/security/2008/dsa-1630
http://www.redhat.com/support/errata/RHSA-2008-0237.html
http://www.redhat.com/support/errata/RHSA-2008-0275.html
http://www.redhat.com/support/errata/RHSA-2008-0585.html
http://www.securityfocus.com/bid/29081
http://www.ubuntu.com/usn/usn-625-1
https://bugzilla.redhat.com/show_bug.cgi?id=404291
https://exchange.xforce.ibmcloud.com/vulnerabilities/42276
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10549
http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00006.html
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00000.html
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00002.html
http://marc.info/?l=linux-netdev&m=120372380411259&w=2 Exploit
http://secunia.com/advisories/30112
http://secunia.com/advisories/30294
http://secunia.com/advisories/30818
http://secunia.com/advisories/30890
http://secunia.com/advisories/30962
http://secunia.com/advisories/31107
http://secunia.com/advisories/31551
http://secunia.com/advisories/31628
http://www.debian.org/security/2008/dsa-1630
http://www.redhat.com/support/errata/RHSA-2008-0237.html
http://www.redhat.com/support/errata/RHSA-2008-0275.html
http://www.redhat.com/support/errata/RHSA-2008-0585.html
http://www.securityfocus.com/bid/29081
http://www.ubuntu.com/usn/usn-625-1
https://bugzilla.redhat.com/show_bug.cgi?id=404291
https://exchange.xforce.ibmcloud.com/vulnerabilities/42276
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10549
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:redhat:enterprise_linux:as_4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:es_4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:ws_4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:4:*:*:*:*:*:*:*

History

21 Nov 2024, 00:39

Type Values Removed Values Added
References () http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00006.html - () http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00006.html -
References () http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00000.html - () http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00000.html -
References () http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00002.html - () http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00002.html -
References () http://marc.info/?l=linux-netdev&m=120372380411259&w=2 - Exploit () http://marc.info/?l=linux-netdev&m=120372380411259&w=2 - Exploit
References () http://secunia.com/advisories/30112 - () http://secunia.com/advisories/30112 -
References () http://secunia.com/advisories/30294 - () http://secunia.com/advisories/30294 -
References () http://secunia.com/advisories/30818 - () http://secunia.com/advisories/30818 -
References () http://secunia.com/advisories/30890 - () http://secunia.com/advisories/30890 -
References () http://secunia.com/advisories/30962 - () http://secunia.com/advisories/30962 -
References () http://secunia.com/advisories/31107 - () http://secunia.com/advisories/31107 -
References () http://secunia.com/advisories/31551 - () http://secunia.com/advisories/31551 -
References () http://secunia.com/advisories/31628 - () http://secunia.com/advisories/31628 -
References () http://www.debian.org/security/2008/dsa-1630 - () http://www.debian.org/security/2008/dsa-1630 -
References () http://www.redhat.com/support/errata/RHSA-2008-0237.html - () http://www.redhat.com/support/errata/RHSA-2008-0237.html -
References () http://www.redhat.com/support/errata/RHSA-2008-0275.html - () http://www.redhat.com/support/errata/RHSA-2008-0275.html -
References () http://www.redhat.com/support/errata/RHSA-2008-0585.html - () http://www.redhat.com/support/errata/RHSA-2008-0585.html -
References () http://www.securityfocus.com/bid/29081 - () http://www.securityfocus.com/bid/29081 -
References () http://www.ubuntu.com/usn/usn-625-1 - () http://www.ubuntu.com/usn/usn-625-1 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=404291 - () https://bugzilla.redhat.com/show_bug.cgi?id=404291 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/42276 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/42276 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10549 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10549 -

Information

Published : 2008-05-08 00:20

Updated : 2024-11-21 00:39


NVD link : CVE-2007-6282

Mitre link : CVE-2007-6282

CVE.ORG link : CVE-2007-6282


JSON object : View

Products Affected

redhat

  • enterprise_linux
  • enterprise_linux_desktop
CWE
CWE-16

Configuration