7.8
CVSSv2

CVE-2005-3848

Published: 27/11/2005 Updated: 07/11/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Memory leak in the icmp_push_reply function in Linux 2.6 prior to 2.6.12.6 and 2.6.13 allows remote malicious users to cause a denial of service (memory consumption) via a large number of crafted packets that cause the ip_append_data function to fail, aka "DST leak in icmp_push_reply."

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.11.10

linux linux kernel 2.6.1

linux linux kernel 2.6.13

linux linux kernel 2.6.11.8

linux linux kernel 2.6.10

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.2

linux linux kernel 2.6.8

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.6.0

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.7

linux linux kernel 2.6.9

linux linux kernel 2.6.11.7

linux linux kernel 2.6.8.1

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.1

linux linux kernel 2.6.6

linux linux kernel 2.6.12

Vendor Advisories

Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in the Red HatEnterprise Linux 4 kernel are now available This security advisory has been rated as having important security impactby the Red Hat Security Response Team ...
Rudolf Polzer reported an abuse of the ‘loadkeys’ command By redefining one or more keys and tricking another user (like root) into logging in on a text console and typing something that involves the redefined keys, a local user could cause execution of arbitrary commands with the privileges of the target user The updated kernel restrict ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-1017 Multiple overflows exist in the io_edgeport driver which might be usable as a denial of ...
The original update lacked recompiled ALSA modules against the new kernel ABI Furthermore, kernel-latest-24-sparc now correctly depends on the updated packages For completeness we're providing the original problem description: Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service ...