CVE-2012-2744: Null Pointer Dereference
A flaw was found in the way ipv6 netfilter's connection tracking module handled packets fragmented into a single fragment. A remote attacker could use this flaw to crash the system.
Upstream fix: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=9e2dcf72023d1447f09c47d77c99b0c49659e5ce
Acknowledgements:
Red Hat would like to thank Antonios Atlasis working with Beyond Security's SecuriTeam Secure Disclosure program for reporting this issue.
Other sources
net/ipv6/netfilter/nfconntrackreasm.c in the Linux kernel before 2.6.34, when the nfconntrackipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2744?
CVE-2012-2744 has been categorized with a severity that allows remote attackers to crash the system.
How do I fix CVE-2012-2744?
To remediate CVE-2012-2744, you should upgrade to the fixed Linux kernel versions 5.10.223-1 or higher.
Which versions of the Linux kernel are affected by CVE-2012-2744?
CVE-2012-2744 affects the Linux kernel versions up to and including 2.6.33.20.
Can CVE-2012-2744 be exploited remotely?
Yes, a remote attacker can exploit CVE-2012-2744 to crash the affected system.
Is there an upstream fix for CVE-2012-2744?
Yes, an upstream fix for CVE-2012-2744 was implemented in the Linux kernel.