Linux Kernel 'fragmentation. c' DoS Vulnerability
Release date:
Updated on:
Affected Systems:
Linux kernel <3.18.1
Description:
Bugtraq id: 71847
CVE (CAN) ID: CVE-2014-9428
Linux Kernel is the Kernel of the Linux operating system.
Earlier than Linux Kernel 3.18.1, net/batman-adv/fragmentation. c Function batadv_frag_merge_packets in B. a. t. m. a. n. when the computing memory size is large, the wrong length field is used, and a denial of service vulnerability exists. This allows remote attackers to use fragmented data packets, this vulnerability causes DoS (grid node crash ).
<* Source: Sven Eckelmann
Link: http://secunia.com/advisories/61851/
*>
Suggestion:
Vendor patch:
Linux
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://git.kernel.org /? P = linux/kernel/git/torvalds/linux-2.6.git; a = commit; h = 5b6698b0e4a37053de35cc24ee695b98a7eb712b
Https://github.com/torvalds/linux/commit/5b6698b0e4a37053de35cc24ee695b98a7eb712b
Http://bugs.debian.org/774155
The Ubuntu 13.10 (Saucy Salamander) Kernel has been upgraded to Linux Kernel 3.10 RC5
Linux Kernel 3.4.62 LTS is now available for download
How to install Linux kernel 13.10 On Ubuntu 3.12
How to install the 3.16.7 CKT2 kernel in Ubuntu 14.10, Ubuntu 14.04, and its derivative versions
Linux Kernel: click here
Linux Kernel: click here
This article permanently updates the link address: