CVE-2010-4251
26.05.2011, 16:55
The socket implementation in net/core/sock.c in the Linux kernel before 2.6.34 does not properly manage a backlog of received packets, which allows remote attackers to cause a denial of service (memory consumption) by sending a large amount of network traffic, as demonstrated by netperf UDP tests.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 𝑥 < 2.6.34 |
| vmware | esx | 4.0 |
| vmware | esx | 4.1 |
| redhat | enterprise_linux | 4.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux |
| ||||||||||||||||||
| linux-armadaxp |
| ||||||||||||||||||
| linux-ec2 |
| ||||||||||||||||||
| linux-fsl-imx51 |
| ||||||||||||||||||
| linux-lts-backport-maverick |
| ||||||||||||||||||
| linux-lts-backport-natty |
| ||||||||||||||||||
| linux-lts-backport-oneiric |
| ||||||||||||||||||
| linux-lts-quantal |
| ||||||||||||||||||
| linux-lts-raring |
| ||||||||||||||||||
| linux-mvl-dove |
| ||||||||||||||||||
| linux-source-2.6.15 |
| ||||||||||||||||||
| linux-ti-omap4 |
|
References