First published: Thu Nov 29 2007(Updated: )
The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of service (crash) via a fragmented ESP packet in which the first fragment does not contain the entire ESP header and IV.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Enterprise Linux Desktop | =4 | |
Redhat Enterprise Linux | =as_4 | |
Redhat Enterprise Linux | =es_4 | |
Redhat Enterprise Linux | =ws_4 | |
redhat/kernel-rt | <0:2.6.24.7-74.el5 | 0:2.6.24.7-74.el5 |
redhat/kernel | <0:2.6.18-53.1.21.el5 | 0:2.6.18-53.1.21.el5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)