2.1
CVSSv2

CVE-2005-2973

Published: 27/10/2005 Updated: 13/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The udp_v6_get_port function in udp.c in Linux 2.6 prior to 2.6.14-rc5, when running IPv6, allows local users to cause a denial of service (infinite loop and crash).

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.11.10

linux linux kernel 2.6.1

linux linux kernel 2.6.13

linux linux kernel 2.6.11.8

linux linux kernel 2.6.10

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.2

linux linux kernel 2.6.8

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.6.0

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.7

linux linux kernel 2.6.9

linux linux kernel 2.6.11.7

linux linux kernel 2.6.8.1

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.1

linux linux kernel 2.6.6

linux linux kernel 2.6.12

Vendor Advisories

The problem can be corrected by updating your system to the following package versions: ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-1017 Multiple overflows exist in the io_edgeport driver which might be usable as a denial of ...
The original update lacked recompiled ALSA modules against the new kernel ABI Furthermore, kernel-latest-24-sparc now correctly depends on the updated packages For completeness we're providing the original problem description: Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service ...

Exploits

/* source: wwwsecurityfocuscom/bid/15156/info Linux Kernel is reported prone to a local denial-of-service vulnerability This issue arises from an infinite loop when binding IPv6 UDP ports */ /* * Linux kernel * IPv6 UDP port selection infinite loop * local denial of service vulnerability * proof of concept code * version 10 (O ...

References

NVD-CWE-Otherhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=170772http://www.securityfocus.com/advisories/9549http://www.securityfocus.com/advisories/9555http://www.securityfocus.com/bid/15156http://www.securityfocus.com/advisories/9806http://secunia.com/advisories/17917http://secunia.com/advisories/17918http://secunia.com/advisories/17261http://www.redhat.com/support/errata/RHSA-2006-0140.htmlhttp://secunia.com/advisories/18562http://www.redhat.com/support/errata/RHSA-2006-0190.htmlhttp://www.redhat.com/support/errata/RHSA-2006-0191.htmlhttp://secunia.com/advisories/18684http://www.debian.org/security/2006/dsa-1017http://secunia.com/advisories/17280http://www.debian.org/security/2006/dsa-1018http://secunia.com/advisories/19374http://secunia.com/advisories/19369http://www.osvdb.org/20163http://secunia.com/advisories/19185http://www.redhat.com/support/errata/RHSA-2006-0493.htmlhttp://secunia.com/advisories/20237http://support.avaya.com/elmodocs2/security/ASA-2006-161.htmhttp://secunia.com/advisories/21745http://www.mandriva.com/security/advisories?name=MDKSA-2006:040http://www.mandriva.com/security/advisories?name=MDKSA-2006:072http://www.vupen.com/english/advisories/2005/2173https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10041https://usn.ubuntu.com/219-1/http://www.securityfocus.com/archive/1/428058/100/0/threadedhttp://www.securityfocus.com/archive/1/428028/100/0/threadedhttp://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/archive/1/419522/100/0/threadedhttp://linux.bkbits.net:8080/linux-2.6/cset%404342df67SNhRx_3FGhUrrU-FXLlQIAhttps://usn.ubuntu.com/219-1/https://nvd.nist.govhttps://www.exploit-db.com/exploits/26382/