Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
- >= 2.6.12-rc2, < 2.6.12-rc2
A vulnerability has been addressed in the Linux kernel's handling of IPv6 hop-by-hop options. The issue arises because the 'ipv6_hop_jumbo' function modifies socket buffer (skb) pointers, which can disrupt the correct processing of network headers. This vulnerability affects the Linux kernel stable tree.
The vulnerability could lead to improper handling of network packets, potentially causing issues in network communication or packet processing.
The vulnerability can be reproduced by sending IPv6 packets that include hop-by-hop options, specifically those that trigger the 'ipv6_hop_jumbo' function. This will cause the 'nh' (network header) pointer to be incorrectly updated, leading to potential disruptions in how packets are processed.
Users can upgrade to the latest version of the Linux kernel stable tree, where this vulnerability has been fixed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.