| 1 |
Candidate: CVE-2005-0449
|
| 2 |
References:
|
| 3 |
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0449
|
| 4 |
http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=1e01441051dda3bb01c455b6e20bce6d00563\d82
|
| 5 |
http://oss.sgi.com/archives/netdev/2005-01/msg01107.html
|
| 6 |
Description:
|
| 7 |
The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to
|
| 8 |
cause a denial of service (kernel crash) or bypass firewall rules via crafted
|
| 9 |
packets, which are not properly handled by the skb_checksum_help function.
|
| 10 |
Notes:
|
| 11 |
** CHANGES ABI **
|
| 12 |
ipv4-fragment-queues-[1,2,2.1].dpatch are in sarge's 2.6.8.
|
| 13 |
ipv4-fragment-queues-[3,4].dpatch are awaiting an ABI event
|
| 14 |
.
|
| 15 |
150_private_fragment_queues-[1,2].diff are awaiting a 2.4.27 ABI event
|
| 16 |
Bugs:
|
| 17 |
upstream: released (2.6.8.1)
|
| 18 |
linux-2.6: N/A
|
| 19 |
2.6.8-sarge-security: released (2.6.8-16sarge2) [ipv4-fragment-queues-1.dpatch, ipv4-fragment-queues-2.dpatch, ipv4-fragment-queues-3.dpatch, ipv4-fragment-queues-4.dpatch]
|
| 20 |
2.4.27-sarge-security: released (2.4.27-10sarge2) [150_private_fragment_queues-1.diff, 150_private_fragment_queues-2.diff]
|