CVE-2010-0751

The ip_evictor function in ip_fragment.c in libnids before 1.24, as used in dsniff and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via crafted fragmented packets.
References
Link Resource
http://freefr.dl.sourceforge.net/project/libnids/libnids/1.24/libnids-1.24.releasenotes.txt Product Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038375.html Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038388.html Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038410.html Third Party Advisory
http://secunia.com/advisories/39225 Third Party Advisory
http://secunia.com/advisories/39249 Third Party Advisory
http://www.securityfocus.com/bid/39142 Third Party Advisory VDB Entry
http://www.vupen.com/english/advisories/2010/0777 Third Party Advisory
http://www.vupen.com/english/advisories/2010/0791 Third Party Advisory
http://xorl.wordpress.com/2010/04/04/libnids-ip-fragmentation-remote-null-pointer-dereference/ Exploit Third Party Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/57428 Third Party Advisory VDB Entry
http://freefr.dl.sourceforge.net/project/libnids/libnids/1.24/libnids-1.24.releasenotes.txt Product Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038375.html Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038388.html Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038410.html Third Party Advisory
http://secunia.com/advisories/39225 Third Party Advisory
http://secunia.com/advisories/39249 Third Party Advisory
http://www.securityfocus.com/bid/39142 Third Party Advisory VDB Entry
http://www.vupen.com/english/advisories/2010/0777 Third Party Advisory
http://www.vupen.com/english/advisories/2010/0791 Third Party Advisory
http://xorl.wordpress.com/2010/04/04/libnids-ip-fragmentation-remote-null-pointer-dereference/ Exploit Third Party Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/57428 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:libnids_project:libnids:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:11:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:12:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:13:*:*:*:*:*:*:*

History

21 Nov 2024, 01:12

Type Values Removed Values Added
References () http://freefr.dl.sourceforge.net/project/libnids/libnids/1.24/libnids-1.24.releasenotes.txt - Product, Third Party Advisory () http://freefr.dl.sourceforge.net/project/libnids/libnids/1.24/libnids-1.24.releasenotes.txt - Product, Third Party Advisory
References () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038375.html - Third Party Advisory () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038375.html - Third Party Advisory
References () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038388.html - Third Party Advisory () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038388.html - Third Party Advisory
References () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038410.html - Third Party Advisory () http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038410.html - Third Party Advisory
References () http://secunia.com/advisories/39225 - Third Party Advisory () http://secunia.com/advisories/39225 - Third Party Advisory
References () http://secunia.com/advisories/39249 - Third Party Advisory () http://secunia.com/advisories/39249 - Third Party Advisory
References () http://www.securityfocus.com/bid/39142 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/39142 - Third Party Advisory, VDB Entry
References () http://www.vupen.com/english/advisories/2010/0777 - Third Party Advisory () http://www.vupen.com/english/advisories/2010/0777 - Third Party Advisory
References () http://www.vupen.com/english/advisories/2010/0791 - Third Party Advisory () http://www.vupen.com/english/advisories/2010/0791 - Third Party Advisory
References () http://xorl.wordpress.com/2010/04/04/libnids-ip-fragmentation-remote-null-pointer-dereference/ - Exploit, Third Party Advisory () http://xorl.wordpress.com/2010/04/04/libnids-ip-fragmentation-remote-null-pointer-dereference/ - Exploit, Third Party Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/57428 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/57428 - Third Party Advisory, VDB Entry

Information

Published : 2010-04-06 16:30

Updated : 2024-11-21 01:12


NVD link : CVE-2010-0751

Mitre link : CVE-2010-0751

CVE.ORG link : CVE-2010-0751


JSON object : View

Products Affected

libnids_project

  • libnids

fedoraproject

  • fedora
CWE
CWE-476

NULL Pointer Dereference