7.8
CVSSv2

CVE-2007-4567

Published: 21/12/2007 Updated: 13/02/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel prior to 2.6.22 does not properly validate the hop-by-hop IPv6 extended header, which allows remote malicious users to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted IPv6 packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.18

linux linux kernel 2.4.36.6

linux linux kernel 2.6.21.6

linux linux kernel 2.4.36.2

linux linux kernel 2.6.20.16

linux linux kernel 2.6.19.4

linux linux kernel 2.6.20.21

linux linux kernel 2.4.36.1

linux linux kernel 2.6.20.17

linux linux kernel 2.6.21.5

linux linux kernel 2.4.36.4

linux linux kernel 2.6.20.20

linux linux kernel 2.4.36.3

linux linux kernel 2.6.20.18

linux linux kernel 2.6.19.7

linux linux kernel 2.6.20.19

linux linux kernel 2.4.36

linux linux kernel 2.6.19.6

linux linux kernel 2.6.19.5

linux linux kernel 2.4.36.5

linux linux kernel 2.2.27

linux linux kernel

linux linux kernel 2.6

Vendor Advisories

The minix filesystem did not properly validate certain filesystem values If a local attacker could trick the system into attempting to mount a corrupted minix filesystem, the kernel could be made to hang for long periods of time, resulting in a denial of service This was only vulnerable in Ubuntu 704 and 710 (CVE-2006-6058) ...
The minix filesystem did not properly validate certain filesystem values If a local attacker could trick the system into attempting to mount a corrupted minix filesystem, the kernel could be made to hang for long periods of time, resulting in a denial of service (CVE-2006-6058) ...
Synopsis Important: kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 5This update has been rated as having important security impact by the RedHat Security Response Team ...
Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues and two bugs arenow available for Red Hat Enterprise Linux 53 Extended Update SupportThis update has been rated as having important security imp ...
Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues and several bugsare now available for Red Hat Enterprise Linux 52 Extended Update SupportThis update has been rated as having important security ...

Exploits

/* source: wwwsecurityfocuscom/bid/26943/info The Linux kernel is prone to a remote denial-of-service vulnerability because it fails to adequately validate specially crafted IPv6 'Hop-By-Hop' headers Attackers can exploit this issue to cause a kernel panic, denying service to legitimate users */ /* * Clemens Kurtenbach <ckurtenba ...