Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Use-after-free vulnerability in net/ipv4/tcp_input.c in the Linux kernel 2.6 before 2.6.20, when IPV6_RECVPKTINFO is set on a listening socket, allows remote attackers to cause a denial of service (kernel panic) via a SYN packet while the socket is in a listening (TCP_LISTEN) state, which is not properly handled and causes the skb structure to be freed.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel 'net/ipv4/tcp_input.c'释放后使用漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 2.6.20之前的2.6版本的net/ipv4/tcp_input.c中存在释放后使用漏洞。当IPV6_RECVPKTINFO被设置成监听套接字时,由于处于监听状态的套接字没有正确的处理结构skb释放时间,远程攻击者可通过向该套接字(TCP_LISTEN)发送一个SYN包造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A