Definition
New Search
drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame which allows remote attackers to bypass packet filters via a large packet with a crafted payload. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1385.
oval:org.mitre.oval:def:10607
drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame which allows remote attackers to bypass packet filters via a large packet with a crafted payload. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1385.
Family:
unix
Status:
ACCEPTED
Platform(s):
- Red Hat Enterprise Linux 4
- Oracle Linux 4
- Oracle Linux 5
- CentOS Linux 5
- Red Hat Enterprise Linux 5
- CentOS Linux 4
Class:
vulnerability
Reference(s):
- CVE-2009-4536
Product(s):