<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>85478</bug_id>
          
          <creation_ts>2005-03-16 02:19 0000</creation_ts>
          <short_desc>Netfilter-related local DoS (CAN-2005-0210)</short_desc>
          <delta_ts>2009-05-03 15:00:50 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Kernel</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>All</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          <bug_file_loc>http://www.ubuntulinux.org/support/documentation/usn/usn-95-1</bug_file_loc>
          <status_whiteboard>[linux &lt; 2.6.11]</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>koon@gentoo.org</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>kern-sec@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-03-16 02:19:53 0000</bug_when>
            <thetext>The Netfilter code also contained a memory leak. Certain locally
generated packet fragments are reassembled twice, which caused a
double allocation of a data structure. This could be locally exploited
to crash the machine due to kernel memory exhaustion. (CAN-2005-0210)</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-03-16 03:16:29 0000</bug_when>
            <thetext>Mass-Ccing kern-sec@gentoo.org to make sure Kernel Security guys know about all
of these...</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>plasmaroo@gentoo.org</who>
            <bug_when>2005-04-09 11:38:08 0000</bug_when>
            <thetext>Created an attachment (id=55778)
Patch
</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>kumba@gentoo.org</who>
            <bug_when>2005-04-23 22:26:43 0000</bug_when>
            <thetext>mips-sources fixed.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>dsd@gentoo.org</who>
            <bug_when>2005-04-27 13:40:45 0000</bug_when>
            <thetext>gentoo-sources-2.6 unaffected</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>plasmaroo@gentoo.org</who>
            <bug_when>2005-08-15 15:43:15 0000</bug_when>
            <thetext>All fixed, closing bug.</thetext>
          </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>55778</attachid>
            <date>2005-04-09 11:38 0000</date>
            <desc>Patch</desc>
            <filename>85478.patch</filename>
            <type>text/plain</type>
            <data encoding="base64">ZGlmZiAtdXJOIHgvbmV0L2lwdjQvaXBfb3V0cHV0LmMgeS9uZXQvaXB2NC9pcF9vdXRwdXQuYwot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</data>        

          </attachment>
    </bug>

</bugzilla>