CVE-2007-1388 - CERT CVE
ID CVE-2007-1388
Sažetak The do_ipv6_setsockopt function in net/ipv6/ipv6_sockglue.c in Linux kernel before 2.6.20, and possibly other versions, allows local users to cause a denial of service (oops) by calling setsockopt with the IPV6_RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.
Reference
CVSS
Base: 4.4
Impact: 6.9
Exploitability:2.7
Pristup
VektorSloženostAutentikacija
LOCAL MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE COMPLETE
CVSS vektor AV:L/AC:M/Au:S/C:N/I:N/A:C
Zadnje važnije ažuriranje 11-10-2017 - 01:31
Objavljeno 10-03-2007 - 19:19