CVE-2005-2973: Low severity Linux Linux kernel vulnerability
Published Oct 27, 2005
·Updated
The udpv6getport function in udp.c in Linux 2.6 before 2.6.14-rc5, when running IPv6, allows local users to cause a denial of service (infinite loop and crash).
Affected Software
35 affected components
Linux Linux kernel=2.6.11
Linux Linux kernel=2.6.14-rc2
Linux Linux kernel=2.6.11.2
Linux Linux kernel=2.6.5
Linux Linux kernel=2.6.11.10
Linux Linux kernel=2.6.1
Linux Linux kernel=2.6.13
Linux Linux kernel=2.6.11.8
Linux Linux kernel=2.6.10
Linux Linux kernel=2.6.11.6
Linux Linux kernel=2.6.11.11
Linux Linux kernel=2.6.3
Linux Linux kernel=2.6.4
Linux Linux kernel=2.6.11.5
Linux Linux kernel=2.6.2
Linux Linux kernel=2.6.14-rc3
Linux Linux kernel=2.6.8
Linux Linux kernel=2.6.12.1
Linux Linux kernel=2.6.11.9
Linux Linux kernel=2.6.0
Linux Linux kernel=2.6.12.2
Linux Linux kernel=2.6.14-rc1
Linux Linux kernel=2.6.12.4
Linux Linux kernel=2.6.11.3
Linux Linux kernel=2.6.12.3
Linux Linux kernel=2.6.7
Linux Linux kernel=2.6.9-2.6.20
Linux Linux kernel=2.6.11.7
Linux Linux kernel=2.6.14-rc4
Linux Linux kernel=2.6.8.1
Linux Linux kernel=2.6.11.4
Linux Linux kernel=2.6.11.12
Linux Linux kernel=2.6.11.1
Linux Linux kernel=2.6.6
Linux Linux kernel=2.6.12
Event History
Oct 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2973?
CVE-2005-2973 has a moderate severity level due to its potential to cause denial of service.
2
How do I fix CVE-2005-2973?
To fix CVE-2005-2973, upgrade to Linux kernel version 2.6.14 or later.
3
Who is affected by CVE-2005-2973?
CVE-2005-2973 affects local users running Linux kernel versions prior to 2.6.14 when using IPv6.
4
What type of vulnerability is CVE-2005-2973?
CVE-2005-2973 is a denial of service vulnerability caused by an infinite loop in the udp_v6_get_port function.
5
Can CVE-2005-2973 be exploited remotely?
CVE-2005-2973 cannot be exploited remotely as it requires local user access to the vulnerable system.