7.5
CVSSv3

CVE-2016-9919

Published: 08/12/2016 Updated: 24/01/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The icmp6_send function in net/ipv6/icmp.c in the Linux kernel up to and including 4.8.12 omits a certain check of the dst data structure, which allows remote malicious users to cause a denial of service (panic) via a fragmented IPv6 packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 4.9

linux linux kernel 4.4.223

linux linux kernel

Vendor Advisories

Several security issues were fixed in the kernel ...
The icmp6_send function in net/ipv6/icmpc in the Linux kernel through 4812 omits a certain check of the dst data structure which allows remote attackers to cause a denial of service (panic) via a fragmented IPv6 packet ...
The icmp6_send function in net/ipv6/icmpc in the Linux kernel through 4812 omits a certain check of the dst data structure, which allows remote attackers to cause a denial of service (panic) via a fragmented IPv6 packet ...