7.8
CVSSv2

CVE-2007-5501

Published: 15/11/2007 Updated: 13/02/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 695
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 up to and including 2.6.23.7, and 2.6.24-rc up to and including 2.6.24-rc2, allows remote malicious users to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer dereference.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.21

linux linux kernel 2.6.23.4

linux linux kernel 2.6.22.15

linux linux kernel 2.6.22

linux linux kernel 2.6.22.4

linux linux kernel 2.6.22.21

linux linux kernel 2.6.23.7

linux linux kernel 2.6.22.12

linux linux kernel 2.6.21.6

linux linux kernel 2.6.22.1

linux linux kernel 2.6.23.1

linux linux kernel 2.6.23

linux linux kernel 2.6.21.1

linux linux kernel 2.6.21.4

linux linux kernel 2.6.21.5

linux linux kernel 2.6.22.7

linux linux kernel 2.6.24

linux linux kernel 2.6.22.18

linux linux kernel 2.6.22.20

linux linux kernel 2.6.22.6

linux linux kernel 2.6.23.3

linux linux kernel 2.6.22.3

linux linux kernel 2.6.22.9

linux linux kernel 2.6.22.13

linux linux kernel 2.6.21.3

linux linux kernel 2.6.22.17

linux linux kernel 2.6.22.11

linux linux kernel 2.6.22.10

linux linux kernel 2.6.23.2

linux linux kernel 2.6.21.7

linux linux kernel 2.6.21.2

linux linux kernel 2.6.22.22

linux linux kernel 2.6.23.5

linux linux kernel 2.6.22.8

linux linux kernel 2.6.23.6

linux linux kernel 2.6.22.2

linux linux kernel 2.6.22.19

linux linux kernel 2.6.22.5

linux linux kernel 2.6.22.16

linux linux kernel 2.6.22.14

Vendor Advisories

The minix filesystem did not properly validate certain filesystem values If a local attacker could trick the system into attempting to mount a corrupted minix filesystem, the kernel could be made to hang for long periods of time, resulting in a denial of service This was only vulnerable in Ubuntu 704 and 710 (CVE-2006-6058) ...
The minix filesystem did not properly validate certain filesystem values If a local attacker could trick the system into attempting to mount a corrupted minix filesystem, the kernel could be made to hang for long periods of time, resulting in a denial of service (CVE-2006-6058) ...