5
CVSSv2

CVE-2011-1927

Published: 13/06/2012 Updated: 13/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel prior to 2.6.39 does not properly construct ICMP_TIME_EXCEEDED packets after a timeout, which allows remote malicious users to cause a denial of service (invalid pointer dereference) via crafted fragmented packets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.38

linux linux kernel 2.6.38.3

linux linux kernel

linux linux kernel 2.6.38.6

linux linux kernel 2.6.38.1

linux linux kernel 2.6.38.5

linux linux kernel 2.6.38.2

linux linux kernel 2.6.38.4

linux linux kernel 2.6.38.7

Vendor Advisories

Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Multiple kernel flaws have been fixed ...