The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving the MSG_MORE flag and a UDP socket.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2009-08-27 10:30
Updated : 2019-09-05 08:45
NVD link : CVE-2009-2698
Mitre link : CVE-2009-2698
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
canonical
- ubuntu_linux
suse
- linux_enterprise_server
- linux_enterprise_desktop
linux
- linux_kernel