CVE-2011-2699
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial of service (disrupted networking) by predicting these…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (5.68%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial of service (disrupted networking) by predicting these values and sending crafted packets.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 5.68% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel · redhat/enterprise linux · redhat/enterprise mrg
- Source
- secalert@redhat.com
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=87c48fa3b4630905f98268dde838ee43626a060c
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1Mailing List, Patch, Vendor Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Broken Link
- http://www.openwall.com/lists/oss-security/2011/07/20/5Mailing List, Third Party Advisory
- http://www.securitytracker.com/id?1027274Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=723429Issue Tracking, Patch, Third Party Advisory
- https://github.com/torvalds/linux/commit/87c48fa3b4630905f98268dde838ee43626a060cPatch, Third Party Advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=87c48fa3b4630905f98268dde838ee43626a060c
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1Mailing List, Patch, Vendor Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Broken Link
- http://www.openwall.com/lists/oss-security/2011/07/20/5Mailing List, Third Party Advisory
- http://www.securitytracker.com/id?1027274Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=723429Issue Tracking, Patch, Third Party Advisory
- https://github.com/torvalds/linux/commit/87c48fa3b4630905f98268dde838ee43626a060cPatch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.