CVE-2014-2309: Buffer Overflow
Last updated 24 July 2024
Other sources
The ip6routeadd function in net/ipv6/route.c in the Linux kernel thr ...
— Debian
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2309?
CVE-2014-2309 is classified as a high severity vulnerability due to its potential for causing a denial of service.
How do I fix CVE-2014-2309?
To mitigate CVE-2014-2309, upgrade to a Linux kernel version higher than 3.13.6 or apply the relevant patches as indicated by your distribution.
Which systems are affected by CVE-2014-2309?
CVE-2014-2309 affects the Linux kernel versions up to 3.13.6 and certain openSUSE and SUSE Linux Enterprise Server versions.
What kind of attack vector is involved in CVE-2014-2309?
CVE-2014-2309 can be exploited through a flood of ICMPv6 Router Advertisement packets to exhaust system memory.
Is CVE-2014-2309 being actively exploited?
While there have been reports of exploitation attempts, it is crucial to monitor your systems and apply updates to prevent potential attacks.