ID:10817 - Exploit for Improper input validation in Linux kernel - CVE-2006-3468

 
Main Vulnerability Database Exploits ID:10817 - Exploit for Improper input validation in Linux kernel - CVE-2006-3468

ID:10817 - Exploit for Improper input validation in Linux kernel - CVE-2006-3468

Published: November 6, 2024


Vulnerability identifier: #VU99897
Vulnerability risk: Low
CVE-ID: CVE-2006-3468
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error and causes an exported directory to be remounted read-only.


Remediation

Install update from vendor's repository.