The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of service (crash) via a fragmented ESP packet in which the first fragment does not contain the entire ESP header and IV.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_linux | Redhat | as_4 (including) | as_4 (including) |
Enterprise_linux | Redhat | es_4 (including) | es_4 (including) |
Enterprise_linux | Redhat | ws_4 (including) | ws_4 (including) |
Enterprise_linux_desktop | Redhat | 4 (including) | 4 (including) |
MRG for RHEL-5 | RedHat | kernel-rt-0:2.6.24.7-74.el5rt | * |
Red Hat Enterprise Linux 4 | RedHat | kernel-0:2.6.9-67.0.15.EL | * |
Red Hat Enterprise Linux 5 | RedHat | kernel-0:2.6.18-53.1.21.el5 | * |
Linux | Ubuntu | hardy | * |
Linux | Ubuntu | upstream | * |
Linux-source-2.6.15 | Ubuntu | dapper | * |
Linux-source-2.6.15 | Ubuntu | upstream | * |
Linux-source-2.6.20 | Ubuntu | feisty | * |
Linux-source-2.6.20 | Ubuntu | upstream | * |
Linux-source-2.6.22 | Ubuntu | gutsy | * |
Linux-source-2.6.22 | Ubuntu | upstream | * |