4.9
CVSSv2

CVE-2007-1592

Published: 22/03/2007 Updated: 07/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 437
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

net/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by opening a listening IPv6 socket, attaching a flow label, and connecting to that socket.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.20.6

linux linux kernel 2.6.4

linux linux kernel 2.6.17

linux linux kernel 2.6.20.9

linux linux kernel 2.6.21

linux linux kernel 2.6.18

linux linux kernel 2.6.16.16

linux linux kernel 2.6.20

linux linux kernel 2.6.18.7

linux linux kernel 2.6.17.12

linux linux kernel 2.6.16.9

linux linux kernel 2.6.12

linux linux kernel 2.6.17.9

linux linux kernel 2.6.19

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.15.3

linux linux kernel 2.6.11.10

linux linux kernel 2.6.10

linux linux kernel 2.6.13

linux linux kernel 2.6.1

linux linux kernel 2.6.16.6

linux linux kernel 2.6.16.8

linux linux kernel 2.6.16

linux linux kernel 2.6.20.13

linux linux kernel 2.6.7

linux linux kernel 2.6.14.7

linux linux kernel 2.6.3

linux linux kernel 2.6.17.2

linux linux kernel 2.6.15

linux linux kernel 2.6.13.3

linux linux kernel 2.6.11.8

linux linux kernel 2.6.17.8

linux linux kernel 2.6.14.4

linux linux kernel 2.6.17.4

linux linux kernel 2.6.16.18

linux linux kernel 2.6.17.14

linux linux kernel 2.6.14.3

linux linux kernel 2.6.18.3

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.16.13

linux linux kernel 2.6.9

linux linux kernel 2.6.16.4

linux linux kernel 2.6.17.3

linux linux kernel 2.6.20.5

linux linux kernel 2.6.16.15

linux linux kernel 2.6.15.6

linux linux kernel 2.6.20.16

linux linux kernel 2.6.15.1

linux linux kernel 2.6.11.5

linux linux kernel 2.6.19.3

linux linux kernel 2.6.19.4

linux linux kernel 2.6.19.1

linux linux kernel 2.6.18.4

linux linux kernel 2.6.16.1

linux linux kernel 2.6.18.1

linux linux kernel 2.6.20.21

linux linux kernel 2.6.8

linux linux kernel 2.6.2

linux linux kernel 2.6.6

linux linux kernel 2.6.14.5

linux linux kernel 2.6.13.2

linux linux kernel 2.6.17.5

linux linux kernel 2.6.18.5

linux linux kernel 2.6.13.5

linux linux kernel 2.6.19.2

linux linux kernel 2.6.16.11

linux linux kernel 2.6.20.17

linux linux kernel 2.6.16.14

linux linux kernel 2.6.20.12

linux linux kernel 2.6.16.25

linux linux kernel 2.6.16.21

linux linux kernel 2.6.16.28

linux linux kernel 2.6.17.10

linux linux kernel 2.6.14.1

linux linux kernel 2.6.16.23

linux linux kernel 2.6.12.5

linux linux kernel 2.6.15.7

linux linux kernel 2.6.16.3

linux linux kernel 2.6.20.20

linux linux kernel 2.6.14.6

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.6.17.1

linux linux kernel 2.6.20.8

linux linux kernel 2.6.20.15

linux linux kernel 2.6.0

linux linux kernel 2.6.13.4

linux linux kernel 2.6.20.18

linux linux kernel 2.6.18.8

linux linux kernel 2.6.12.2

linux linux kernel 2.6.16.31

linux linux kernel 2.6.16.26

linux linux kernel 2.6.18.2

linux linux kernel 2.6.16.29

linux linux kernel 2.6.20.11

linux linux kernel 2.6.20.3

linux linux kernel 2.6.19.7

linux linux kernel 2.6.15.2

linux linux kernel 2.6.20.19

linux linux kernel 2.6.16.22

linux linux kernel 2.6.17.11

linux linux kernel 2.6.16.10

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.20.10

linux linux kernel 2.6.16.24

linux linux kernel 2.6.12.3

linux linux kernel 2.6.16.30

linux linux kernel 2.6.15.4

linux linux kernel 2.6.16.17

linux linux kernel 2.6.20.2

linux linux kernel 2.6.16.12

linux linux kernel 2.6.16.27

linux linux kernel 2.6.12.6

linux linux kernel 2.6.17.7

linux linux kernel 2.6.20.1

linux linux kernel 2.6.11.7

linux linux kernel 2.6.16.2

linux linux kernel 2.6.18.6

linux linux kernel 2.6.19.6

linux linux kernel 2.6.14.2

linux linux kernel 2.6.19.5

linux linux kernel 2.6.20.4

linux linux kernel 2.6.17.6

linux linux kernel 2.6.16.7

linux linux kernel 2.6.17.13

linux linux kernel 2.6.8.1

linux linux kernel 2.6.20.14

linux linux kernel 2.6.20.7

linux linux kernel 2.6.16.5

linux linux kernel 2.6.11.4

linux linux kernel 2.6.16.19

linux linux kernel 2.6.11.12

linux linux kernel 2.6.16.20

linux linux kernel 2.6.15.5

linux linux kernel 2.6.11.1

linux linux kernel 2.6.13.1

Vendor Advisories

Philipp Richter discovered that the AppleTalk protocol handler did not sufficiently verify the length of packets By sending a crafted AppleTalk packet, a remote attacker could exploit this to crash the kernel (CVE-2007-1357) ...
CVE-2006-6060 CVE-2006-6106 CVE-2006-6535 CVE-2007-0958 CVE-2007-1357 CVE-2007-1592 Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code This update also fixes a regression in the smbfs subsystem which was introduced in DSA-1233 w ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-0005 Daniel Roethlisberger discovered two buffer overflows in the cm4040 driver for the Omnik ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-2731 infamous41md reported multiple integer overflows in the Sbus PROM driver that would allo ...

References

CWE-119http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20.4http://www.securityfocus.com/bid/23104http://secunia.com/advisories/24618http://secunia.com/advisories/24777http://www.debian.org/security/2007/dsa-1286http://lists.suse.com/archive/suse-security-announce/2007-May/0001.htmlhttp://secunia.com/advisories/25078http://secunia.com/advisories/25099http://www.novell.com/linux/security/advisories/2007_30_kernel.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0347.htmlhttp://secunia.com/advisories/25288http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=233478http://support.avaya.com/elmodocs2/security/ASA-2007-404.htmhttp://www.debian.org/security/2007/dsa-1304http://www.mandriva.com/security/advisories?name=MDKSA-2007:078http://rhn.redhat.com/errata/RHSA-2007-0436.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0673.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0672.htmlhttp://www.novell.com/linux/security/advisories/2007_35_kernel.htmlhttp://www.novell.com/linux/security/advisories/2007_43_kernel.htmlhttp://www.ubuntu.com/usn/usn-464-1http://secunia.com/advisories/25392http://secunia.com/advisories/25630http://secunia.com/advisories/25683http://secunia.com/advisories/25714http://secunia.com/advisories/25961http://secunia.com/advisories/26379http://secunia.com/advisories/25226http://secunia.com/advisories/27528http://www.debian.org/security/2008/dsa-1503http://secunia.com/advisories/29058http://rhn.redhat.com/errata/RHBA-2007-0304.htmlhttp://www.vupen.com/english/advisories/2007/1084http://www.mandriva.com/security/advisories?name=MDVSA-2011:051http://marc.info/?l=linux-netdev&m=117406721731891&w=2https://exchange.xforce.ibmcloud.com/vulnerabilities/33176https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10130http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=d35690beda1429544d46c8eb34b2e3a8c37ab299https://usn.ubuntu.com/464-1/https://nvd.nist.gov