Upstream information
Description
Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before 2.6.33.14 allows remote attackers to cause a denial of service via a Datagram Congestion Control Protocol (DCCP) packet with an invalid feature options length, which triggers a buffer over-read.NVD CVSS v2 Base Score: 7.8 (AV:N/AC:L/Au:N/C:N/I:N/A:C)
Novell/SUSE information
Novell Bugzilla entry: 692498 SUSE Security Advisories:- openSUSE-SU-2012:0206-1, published Thu, 9 Feb 2012 19:09:19 +0100 (CET)
- openSUSE-SU-2012:0236-1, published Thu, 9 Feb 2012 19:10:55 +0100 (CET)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 11.4 DEBUGINFO |
| |
| openSUSE 11.4 |
| |
| openSUSE 11.3 |
| |
| openSUSE 11.3 |
|
