| Linux kernel hash table collision packets denial of service (LinuxKernelPacketsDos) |
|---|
| Vuln ID: | 12160 | |
|---|---|---|
| Risk Level: | Medium |
LinuxKernelPacketsDos |
| Platforms: | RedHat Linux: 7.1, RedHat Linux: 7.2, Conectiva Linux: 8.0, RedHat Linux: 7.3, Debian Debian Linux: 3.0, RedHat Linux: 8.0, Turbolinux Turbolinux: 8 Server, Turbolinux Turbolinux: 8 Workstation, Turbolinux Turbolinux: 7 Server, Turbolinux Turbolinux: 7 Workstation, RedHat Enterprise Linux: 2.1 AS, RedHat Enterprise Linux: 2.1 ES, RedHat Enterprise Linux: 2.1 WS, RedHat Linux: 9.0, RedHat Enterprise Linux: 2.1 AW, Conectiva Linux: 9.0, RedHat Linux Advanced Workstation: 2.1 Itanium, RedHat Linux: 7.1 for pSeries, RedHat Linux: 7.1 for iSeries, Linux Kernel: 2.4.0 | |
| Description: | The Linux Kernel is vulnerable to a denial of service, caused by improper handling of TCP/IP fragment reassembly. A remote attacker could send specially-crafted packets that would cause a large number of hash table collisions, which would consume all available CPU resources. |
|
| Remedy: | For Red Hat Linux: Upgrade to the latest kernel packages, as listed below. Refer to RHSA-2003:187-25, RHSA-2003:190-25, RHSA-2003:195-06, and RHSA-2003:198-16 for more information. See References. Red Hat 7.1, 7.2 and 7.3: 2.4.20-18.7 or later For Debian GNU/Linux 3.0 (woody): For Debian GNU/Linux 3.0 (woody): For Debian GNU/Linux 3.0 (woody) containing the linux-kernel-2.4.17-s390 package: For Turbolinux: Turbolinux: 2.4.18-13 or later For Conectiva Linux 8: For Conectiva Linux 9: For other distributions: |
|
| Additional Information: | Service Release 3.19 | |
| References: | RHSA-2003:187-25 DSA-311-1 DSA-312-1 DSA-336-1 DSA-332-1 Turbolinux Security Advisory TLSA-2003-41 Conectiva Linux Security Announcement CLSA-2003:702 RHSA-2003:190-25 RHSA-2003:195-06 RHSA-2003:198-16 Conectiva Linux Security Announcement CLSA-2003:796 DSA-442-1 ISS X-Force CVE CVE-2003-0364 |
|
![]() Know Your Risks |
![]() Common Vulnerabilties & Exposures |