The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
No CVSS v3.1
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
AV:N/AC:L/Au:N/C:N/I:N/A:C
Vendors | Products |
---|---|
Linux |
|
Configuration 1 [-]
|
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2007-07-10T01:00:00
Updated: 2007-07-13T09:00:00
Reserved: 2007-07-09T00:00:00
Link: CVE-2007-3642
JSON object: View
NVD Information
Status : Modified
Published: 2007-07-10T01:30:00.000
Modified: 2023-11-07T02:00:52.650
Link: CVE-2007-3642
JSON object: View
Redhat Information
No data.
CWE