UBUNTU-CVE-2012-2372
Dashboard / Vulnerabilities / UBUNTU-CVE-2012-2372
UBUNTU-CVE-2012-2372
Summary:
Details: The rds_ib_xmit function in net/rds/ib_send.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel 3.7.4 and earlier allows local users to cause a denial of service (BUG_ON and kernel panic) by establishing an RDS connection with the source IP address equal to the IPoIB interface's own IP address, as demonstrated by rds-ping.
References: https://ubuntu.com/security/CVE-2012-2372, https://rhn.redhat.com/errata/RHSA-2012-0743.html, https://ubuntu.com/security/notices/USN-1529-1, https://ubuntu.com/security/notices/USN-1530-1, https://ubuntu.com/security/notices/USN-1531-1, https://ubuntu.com/security/notices/USN-1514-1, https://ubuntu.com/security/notices/USN-1538-1, https://ubuntu.com/security/notices/USN-1554-1, https://ubuntu.com/security/notices/USN-1555-1, https://ubuntu.com/security/notices/USN-1556-1, https://ubuntu.com/security/notices/USN-1558-1, https://ubuntu.com/security/notices/USN-1563-1, https://www.cve.org/CVERecord?id=CVE-2012-2372
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
