2.6
CVSSv2

CVE-2005-3275

Published: 21/10/2005 Updated: 07/11/2023
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:P

Vulnerability Summary

The NAT code (1) ip_nat_proto_tcp.c and (2) ip_nat_proto_udp.c in Linux kernel 2.6 prior to 2.6.13 and 2.4 prior to 2.4.32-rc1 incorrectly declares a variable to be static, which allows remote malicious users to cause a denial of service (memory corruption) by causing two packets for the same protocol to be NATed at the same time, which leads to memory corruption.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.8.1.5

linux linux kernel 2.4.18

linux linux kernel 2.4.30

linux linux kernel 2.6.12

linux linux kernel 2.4.0

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.11.10

linux linux kernel 2.6.1

linux linux kernel 2.4.27

linux linux kernel 2.6.11.8

linux linux kernel 2.4.26

linux linux kernel 2.6.11_rc1_bk6

linux linux kernel 2.4.19

linux linux kernel 2.4.21

linux linux kernel 2.6.10

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.7

linux linux kernel 2.4.23_ow2

linux linux kernel 2.4.22

linux linux kernel 2.4.23

linux linux kernel 2.4.29

linux linux kernel 2.6.2

linux linux kernel 2.6.8

linux linux kernel 2.4.25

linux linux kernel 2.4.24

linux linux kernel 2.6.12.5

linux linux kernel 2.4.31

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.4.28

linux linux kernel 2.6.0

linux linux kernel 2.4.24_ow1

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.6

linux linux kernel 2.6.9

linux linux kernel 2.6.12.6

linux linux kernel 2.6.11.7

linux linux kernel 2.6.8.1

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.1

Vendor Advisories

Synopsis Updated kernel packages available for Red Hat Enterprise Linux 4 Update 2 Type/Severity Security Advisory: Important Topic Updated kernel packages are now available as part of ongoing supportand maintenance of Red Hat Enterprise Linux version 4 This is thesecond regular updateThis update has bee ...
The problem can be corrected by updating your system to the following package versions: ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-0756 Alexander Nyberg discovered that the ptrace() system call does not properly verify addre ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-2302 A race condition in the sysfs filesystem allows local users to read kernel memory and ca ...