Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-4997

Overview

Vulnerability Score 7.1 7.1
CVE Id CVE-2007-4997
Last Modified 07 Mar 2011 09:59:54
Published 06 Nov 2007 02:46:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2007-4997

Summary

Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cause a denial of service (crash) via a crafted SKB length value in a runt IEEE 802.11 frame when the IEEE80211_STYPE_QOS_DATA flag is set, aka an "off-by-two error."

Vulnerable Systems

Operating System

  • Linux Kernel 2.6.22.7


References

CONFIRM - http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23

XF - kernel-ieee80211-dos(38247)

VUPEN - ADV-2007-3718

UBUNTU - USN-574-1

REDHAT - RHSA-2007:1104

REDHAT - RHSA-2007:0993

SUSE - SUSE-SA:2007:059

MANDRIVA - MDVSA-2008:008

MANDRIVA - MDKSA-2007:232

MANDRIVA - MDKSA-2007:226

DEBIAN - DSA-1428

SECUNIA - 28162

SECUNIA - 28033

SECUNIA - 27912

SECUNIA - 27824

SECUNIA - 27614

SECUNIA - 27555

SUSE - SUSE-SA:2007:064

MISC - http://git.kernel.org/?p=linux/kernel/git/avi/kvm.git;a=commitdiff;h=04045f98e0457aba7d4e6736f37eed189c48a5f7

CONFIRM - ftp://ftp.kernel.org/pub/linux/kernel/people/bunk/linux-2.6.16.y/testing/ChangeLog-2.6.16.57-rc1

UBUNTU - USN-578-1

UBUNTU - USN-558-1

BID - 26337

MANDRIVA - MDVSA-2008:105

SECUNIA - 28971

SECUNIA - 28806

SECUNIA - 28706

SECUNIA - 28170

SUSE - SUSE-SA:2008:006


Last Updated: 27 May 2016 10:46:02