Linux Kernel UDP Processing Flaw Lets Remote Users Deny Service : 7/7/2015 8:27:56 AM

Trial offer - 3 Months of GlowHost goodness for just $1.00 - Choose any shared plan for just 1 buck.
From our sponsors
 

 

Vulnerability Databse
This module replaces the description field of a feed to the page it links to (in addition, it wipes out the content:encoded field), so you can get its full text.

Linux Kernel UDP Processing Flaw Lets Remote Users Deny Service
7/7/2015 12:00:00 AM

Linux Kernel UDP Processing Flaw Lets Remote Users Deny Service
SecurityTracker Alert ID:  1032794
SecurityTracker URL:  http://securitytracker.com/id/1032794
CVE Reference:   CVE-2015-5364, CVE-2015-5366   (Links to External Site)
Date:  Jul 7 2015
Impact:   Denial of service via network
Fix Available:  Yes  Vendor Confirmed:  Yes  

Description:   Two vulnerabilities were reported in the Linux Kernel. A remote user can cause denial of service conditions on the target system.

A remote user can send a flood of UDP packets with specially crafted checksums to cause the target application to hang [CVE-2015-5364].

A remote user can send a flood of UDP packets with specially crafted checksums to cause the target application to stop reading packets [CVE-2015-5366].

Impact:   A remote user can cause the target application to hang.

A remote user can cause the target application to stop reading packets.

Solution:   The vendor has issued a source code fix, available at:

https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=beb39db59d14990e401e235faf66a6b9b31240b0

Vendor URL:  www.kernel.org/ (Links to External Site)
Cause:   State error
Underlying OS:  

Message History:   None.

 

You are receiving this email because you subscribed to this feed at feedmyinbox.com

If you no longer wish to receive these emails, you can unsubscribe from this feed, or manage all your subscriptions

Diberdayakan oleh Blogger.