CVE-2009-2698
27.08.2009, 17:30
The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving the MSG_MORE flag and a UDP socket.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 𝑥 < 2.6.19 |
canonical | ubuntu_linux | 6.06 |
canonical | ubuntu_linux | 8.04 |
canonical | ubuntu_linux | 8.10 |
canonical | ubuntu_linux | 9.04 |
redhat | enterprise_linux_desktop | 4.0 |
redhat | enterprise_linux_desktop | 5.0 |
redhat | enterprise_linux_eus | 4.8 |
redhat | enterprise_linux_eus | 5.3 |
redhat | enterprise_linux_server | 4.0 |
redhat | enterprise_linux_server | 5.0 |
redhat | enterprise_linux_server_aus | 5.3 |
redhat | enterprise_linux_workstation | 4.0 |
redhat | enterprise_linux_workstation | 5.0 |
vmware | vcenter_server | 4.0 |
vmware | esxi | 4.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References