First published: Wed Dec 06 2006(Updated: )
The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remote attackers to cause a denial of service (memory corruption) via crafted packets that cause the kernel to interpret another field as an offset.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux kernel | =2.6.19 | |
Linux Kernel | =2.6.19 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6333 has a medium severity level due to its potential to cause denial of service through memory corruption.
To fix CVE-2006-6333, update your Linux kernel to a version later than 2.6.19 that addresses this vulnerability.
CVE-2006-6333 specifically affects Linux kernel version 2.6.19.
CVE-2006-6333 involves incorrect assignment of the ip_summed field by the tr_rx function, leading to potential remote attacker exploitation.
Yes, CVE-2006-6333 can be exploited remotely by sending crafted packets to the affected system.