UBUNTU-CVE-2013-0310
Dashboard / Vulnerabilities / UBUNTU-CVE-2013-0310
UBUNTU-CVE-2013-0310
Summary:
Details: The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIONS setsockopt system call.
References: https://ubuntu.com/security/CVE-2013-0310, http://www.openwall.com/lists/oss-security/2013/02/19, http://www.openwall.com/lists/oss-security/2013/02/20/2, https://ubuntu.com/security/notices/USN-1558-1, https://ubuntu.com/security/notices/USN-1579-1, https://ubuntu.com/security/notices/USN-1563-1, https://ubuntu.com/security/notices/USN-1580-1, https://ubuntu.com/security/notices/USN-1651-1, https://ubuntu.com/security/notices/USN-1653-1, https://ubuntu.com/security/notices/USN-1554-1, https://www.cve.org/CVERecord?id=CVE-2013-0310
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
