Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 386425

Summary: Kernel: skb_gro_header_slow() remote DoS (CVE-2011-2723)
Product: Gentoo Security Reporter: GLSAMaker/CVETool Bot <glsamaker>
Component: KernelAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: kernel
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: [linux < 2.6.39.4]
Package list:
Runtime testing required: ---

Description GLSAMaker/CVETool Bot gentoo-dev 2011-10-08 17:32:54 UTC
CVE-2011-2723 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2723):
  The skb_gro_header_slow function in include/linux/netdevice.h in the Linux
  kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled,
  resets certain fields in incorrect situations, which allows remote attackers
  to cause a denial of service (system crash) via crafted network traffic.