[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#300838: marked as done ([CAN-2005-0210]: Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service)



Your message dated Wed, 23 Mar 2005 10:55:09 +0900
with message-id <20050323015507.GM24872@verge.net.au>
and subject line Bug#300838: [CAN-2005-0210]: Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--------------------------------------
Received: (at submit) by bugs.debian.org; 22 Mar 2005 07:08:06 +0000
>From micah@riseup.net Mon Mar 21 23:08:06 2005
Return-path: <micah@riseup.net>
Received: from buffy.riseup.net (mail.riseup.net) [69.90.134.155] 
	by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
	id 1DDdUk-00071Q-00; Mon, 21 Mar 2005 23:08:06 -0800
Received: from localhost (localhost [127.0.0.1])
	by mail.riseup.net (Postfix) with ESMTP id 46EADA2C94
	for <submit@bugs.debian.org>; Mon, 21 Mar 2005 23:07:54 -0800 (PST)
Received: from mail.riseup.net ([127.0.0.1])
	by localhost (buffy [127.0.0.1]) (amavisd-new, port 10024) with ESMTP
	id 19347-27 for <submit@bugs.debian.org>;
	Mon, 21 Mar 2005 23:07:53 -0800 (PST)
Received: from localhost (localhost [127.0.0.1])
	(using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
	(No client certificate requested)
	by mail.riseup.net (Postfix) with ESMTP id 38D92A2C11
	for <submit@bugs.debian.org>; Mon, 21 Mar 2005 23:07:53 -0800 (PST)
Received: by pond (Postfix, from userid 1000)
	id 6E9D83AC29; Tue, 22 Mar 2005 01:07:59 -0600 (CST)
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Micah Anderson <micah@riseup.net>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: [CAN-2005-0210]: Netfilter in Linux kernel 2.6.8.1 allows remote attackers
 to cause a denial of service
X-Mailer: reportbug 3.8
Date: Tue, 22 Mar 2005 01:07:59 -0600
Message-Id: <[🔎] 20050322070759.6E9D83AC29@pond>
X-Virus-Scanned: by amavisd-new-20030616-p10 (Debian) at riseup.net
Delivered-To: submit@bugs.debian.org
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
	(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
	autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Package: kernel-source-2.6.8
Version: 2.6.8-14
Severity: normal
Tags: security

Greetings,

CAN-2005-0210 reads:

Netfilter in the Linux kernel 2.6.8.1 allows local users to cause a
denial of service (memory consumption) via certain packet fragments
that are reassembled twice, which causes a data structure to be
allocated twice.

Further details:

Please reference Ubuntu Security Notice USN-95-1 located here:
http://marc.theaimsgroup.com/?l=bugtraq&m=111091402626556&w=2

Thanks,
Micah

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (300, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.6.10-1-k7
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)

Versions of packages kernel-source-2.6.8 depends on:
ii  binutils                      2.15-5     The GNU assembler, linker and bina
ii  bzip2                         1.0.2-5    high-quality block-sorting file co
ii  coreutils [fileutils]         5.2.1-2    The GNU core utilities
ii  fileutils                     5.2.1-2    The GNU file management utilities 

---------------------------------------
Received: (at 300838-done) by bugs.debian.org; 23 Mar 2005 02:35:50 +0000
>From horms@koto.vergenet.net Tue Mar 22 18:35:50 2005
Return-path: <horms@koto.vergenet.net>
Received: from koto.vergenet.net [210.128.90.7] 
	by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
	id 1DDvic-0003KG-00; Tue, 22 Mar 2005 18:35:38 -0800
Received: by koto.vergenet.net (Postfix, from userid 7100)
	id D447634003; Wed, 23 Mar 2005 11:12:26 +0900 (JST)
Date: Wed, 23 Mar 2005 10:55:09 +0900
From: Horms <horms@debian.org>
To: Micah Anderson <micah@riseup.net>, 300838-done@bugs.debian.org
Subject: Re: Bug#300838: [CAN-2005-0210]: Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service
Message-ID: <20050323015507.GM24872@verge.net.au>
References: <[🔎] 20050322070759.6E9D83AC29@pond>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <[🔎] 20050322070759.6E9D83AC29@pond>
X-Cluestick: seven
User-Agent: Mutt/1.5.6+20040907i
Delivered-To: 300838-done@bugs.debian.org
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
	(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
	autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

CAN-2005-0210 is fixed in kernel-source-2.6.8 2.6.8-15

-- 
Horms



Reply to: