| Severity : |
High
|
| Published : |
2009-03-12
|
| Modified : |
2012-03-21
|
| Base Score : |
7.1
|
| Details : |
The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of an ICMP Host Unreachable message, which allows remote attackers to cause a denial of service (connectivity outage) by sending a large series of packets to many destination IP addresses within this REJECT route, related to an "rt_cache leak."
|
| Product/Version : |
CGE 5.x
Mobilinux 5.x
|
|
CVE Vulnerabilities List CVE-2009