4.9

CVE-2008-3686

Exploit
The rt6_fill_node function in net/ipv6/route.c in Linux kernel 2.6.26-rc4, 2.6.26.2, and possibly other 2.6.26 versions, allows local users to cause a denial of service (kernel OOPS) via IPv6 requests when no IPv6 input device is in use, which triggers a NULL pointer dereference.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinuxLinux Kernel Version2.6.26 Updaterc4
LinuxLinux Kernel Version2.6.26.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.47% 0.372
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=5e0115e500fe9dd2ca11e6f92db9123204f1327a
http://lkml.org/lkml/2008/8/7/230
Exploit
http://lkml.org/lkml/2008/8/8/7
Exploit
http://secunia.com/advisories/31579
Vendor Advisory
http://www.vupen.com/english/advisories/2008/2422
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/44605