The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote attackers to cause a denial of service (IOMMU space exhaustion and system crash) by using jumbo frames for a large amount of network traffic, as demonstrated by a flood ping.
Metrics
No CVSS v4.0
No CVSS v3.1
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
AV:N/AC:L/Au:N/C:N/I:N/A:C
This CVE is not in the KEV list.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
Vendors | Products |
---|---|
Linux |
|
Redhat |
|
Configuration 1 [-]
|
Package | CPE | Advisory | Released Date |
---|---|---|---|
MRG for RHEL-5 | |||
kernel-rt-0:2.6.24.7-137.el5rt | cpe:/a:redhat:enterprise_mrg:1::el5 | RHSA-2009:1540 | 2009-11-03T00:00:00Z |
Red Hat Enterprise Linux 4 | |||
kernel-0:2.6.9-89.0.18.EL | cpe:/o:redhat:enterprise_linux:4 | RHSA-2009:1671 | 2009-12-15T00:00:00Z |
Red Hat Enterprise Linux 5 | |||
kernel-0:2.6.18-164.6.1.el5 | cpe:/o:redhat:enterprise_linux:5 | RHSA-2009:1548 | 2009-11-03T00:00:00Z |
Red Hat Enterprise Virtualization for RHEL-5 | |||
rhev-hypervisor-0:5.4-2.1.3.el5_4rhev2_1 | cpe:/o:redhat:enterprise_linux:5::hypervisor | RHSA-2009:1692 | 2009-12-23T00:00:00Z |
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2009-10-19T19:27:00
Updated: 2024-08-07T06:31:10.730Z
Reserved: 2009-10-09T00:00:00
Link: CVE-2009-3613
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-10-19T20:00:00.703
Modified: 2024-11-21T01:07:48.330
Link: CVE-2009-3613
Redhat