CVE-2009-4272
A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that force collisions in the IPv4 routing hash table, and…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 11.1%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that force collisions in the IPv4 routing hash table, and trigger a routing "emergency" in which a hash chain is too long. NOTE: this is related to an issue in the Linux kernel before 2.6.31, when the kernel routing cache is disabled, involving an uninitialized pointer and a panic.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 11.05% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-667
- Affected
- linux/linux kernel · redhat/virtualization · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux server · redhat/enterprise linux workstation
- Source
- secalert@redhat.com
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=73e42897e8e5619eacb787d2ce69be12f47cfc21Broken Link
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=b6280b47a7a42970d098a3059f4ebe7e55e90d8dBroken Link
- http://support.avaya.com/css/P8/documents/100073666Third Party Advisory
- http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.31Broken Link
- http://www.openwall.com/lists/oss-security/2010/01/20/1Mailing List
- http://www.openwall.com/lists/oss-security/2010/01/20/6Mailing List
- https://bugzilla.redhat.com/show_bug.cgi?id=545411Exploit, Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/55808Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11167Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7026Broken Link
- https://rhn.redhat.com/errata/RHSA-2010-0046.htmlVendor Advisory
- https://rhn.redhat.com/errata/RHSA-2010-0095.htmlVendor Advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=73e42897e8e5619eacb787d2ce69be12f47cfc21Broken Link
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=b6280b47a7a42970d098a3059f4ebe7e55e90d8dBroken Link
- http://support.avaya.com/css/P8/documents/100073666Third Party Advisory
- http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.31Broken Link
- http://www.openwall.com/lists/oss-security/2010/01/20/1Mailing List
- http://www.openwall.com/lists/oss-security/2010/01/20/6Mailing List
- https://bugzilla.redhat.com/show_bug.cgi?id=545411Exploit, Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/55808Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11167Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7026Broken Link
- https://rhn.redhat.com/errata/RHSA-2010-0046.htmlVendor Advisory
- https://rhn.redhat.com/errata/RHSA-2010-0095.htmlVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.