Release date: Updated: 2010-01-25 affected systems: RedHatLinux5.x Description: Creating BUGTRAQID: 37875 CVEID: CVE-2009-4272LinuxKernel is open source
Release date: 2010-01-20
Updated on: 2010-01-25
Affected Systems:
RedHat Linux 5.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 37875
Cve id: CVE-2009-4272
Linux Kernel is the Kernel used by open source Linux.
There are two Denial-of-Service vulnerabilities in the routing Implementation of Linux Kernel in Red Hat. If attackers can use specially crafted packets to cause a large number of conflicts in the route hash table to trigger the emergency routing flush, the deadlock will be triggered. Secondly, if the kernel route cache is disabled, after route query, Uninitialized pointers are left, which leads to busy kernel.
<* Source: Konstantin Khorenko
Link: https://bugzilla.redhat.com/show_bug.cgi? Format = multiple & amp; id = 545411
Https://www.redhat.com/support/errata/RHSA-2010-0046.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
RedHat
------
For this reason, RedHat has released a Security Bulletin (RHSA-2010: 0046-01) and patch:
RHSA-2010: 0046-01: Important: kernel security and bug fix update
Link: https://www.redhat.com/support/errata/RHSA-2010-0046.html