First published: Tue Nov 22 2005(Updated: )
Linux kernel before after 2.6.12 and before 2.6.13.1 might allow attackers to cause a denial of service (Oops) via certain IPSec packets that cause alignment problems in standard multi-block cipher processors. NOTE: it is not clear whether this issue can be triggered by an attacker.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | =2.6.12.1 | |
Linux Kernel | =2.6.12.2 | |
Linux Kernel | =2.6.12.3 | |
Linux Kernel | =2.6.12.4 | |
Linux Kernel | =2.6.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3753 has a severity rating that indicates it could lead to a denial of service due to alignment issues in processing certain IPSec packets.
To fix CVE-2005-3753, upgrade the Linux kernel to version 2.6.13.1 or later as it addresses the vulnerability.
CVE-2005-3753 affects Linux kernel versions 2.6.12.1 through 2.6.13.
It is unclear whether CVE-2005-3753 can be triggered by remote attackers based on the available information.
Systems running Linux kernel versions 2.6.12.1 through 2.6.12.4 and 2.6.13 are at risk of CVE-2005-3753.