Overview
A memory freeing vulnerability in the Linux kernel module ip_nat_snmp_basic can be exploited to create a denial-of-service condition.
Description
ip_nat_snmp_basic The ip_nat_snmp_basic IP NAT module is intended for use with SNMP network discovery and monitoring applications where target networks use conflicting private IP addresses . |
Impact
A remote attacker could cause a system running Linux kernel version < 2.6.16.18 with the ip_nat_snmp_basic module loaded to crash. This results in a denial-of-service condition. |
Solution
Apply an update |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
This vulnerability was reported by Patrick McHardy.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2006-2444 |
Severity Metric: | 2.69 |
Date Public: | 2006-05-23 |
Date First Published: | 2006-06-09 |
Date Last Updated: | 2006-07-13 20:42 UTC |
Document Revision: | 30 |