CVE-2010-4251
26.05.2011, 16:55
The socket implementation in net/core/sock.c in the Linux kernel before 2.6.34 does not properly manage a backlog of received packets, which allows remote attackers to cause a denial of service (memory consumption) by sending a large amount of network traffic, as demonstrated by netperf UDP tests.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 𝑥 < 2.6.34 |
vmware | esx | 4.0 |
vmware | esx | 4.1 |
redhat | enterprise_linux | 4.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
linux |
| ||||||||||||||||||
linux-armadaxp |
| ||||||||||||||||||
linux-ec2 |
| ||||||||||||||||||
linux-fsl-imx51 |
| ||||||||||||||||||
linux-lts-backport-maverick |
| ||||||||||||||||||
linux-lts-backport-natty |
| ||||||||||||||||||
linux-lts-backport-oneiric |
| ||||||||||||||||||
linux-lts-quantal |
| ||||||||||||||||||
linux-lts-raring |
| ||||||||||||||||||
linux-mvl-dove |
| ||||||||||||||||||
linux-source-2.6.15 |
| ||||||||||||||||||
linux-ti-omap4 |
|
References