Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 118692 - DoS in netlink_rcv_skb() (CVE-2006-0035)
Summary: DoS in netlink_rcv_skb() (CVE-2006-0035)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Kernel (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Gentoo Security
URL: http://www.kernel.org/git/?p=linux/ke...
Whiteboard: [linux >= 2.6.15 < 2.6.15.1]
Keywords:
Depends on:
Blocks:
 
Reported: 2006-01-11 12:41 UTC by Sune Kloppenborg Jeppesen (RETIRED)
Modified: 2009-05-03 16:00 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2006-01-11 12:41:50 UTC
The netlink_rcv_skb function in af_netlink.c in Linux kernel 2.6.15
and earlier allows local users to cause a denial of service (infinite
loop) via a nlmsg_len field of 0.
Comment 1 Tim Yamin (RETIRED) gentoo-dev 2006-01-11 13:49:44 UTC
Affected sources, CCing maintainers; this is fixed in genpatches-base-2.6.15-2 FYI:

ck-sources: marineam
hppa-sources: GMSoft
suspend2-sources: brix
Comment 2 Henrik Brix Andersen 2006-01-11 15:34:51 UTC
Fixed in sys-kernel/suspend2-sources-2.6.15-r1.
Comment 3 Micheal Marineau (RETIRED) gentoo-dev 2006-01-11 15:46:26 UTC
fixed in ck-sources-2.6.15_p1-r1
Comment 4 Guy Martin (RETIRED) gentoo-dev 2006-01-16 08:16:56 UTC
hppa-sources-2.6.15.1_p4 in CVS.
Comment 5 Tim Yamin (RETIRED) gentoo-dev 2006-03-11 09:36:31 UTC
All fixed, closing bug...