CVE-2007-3642

Publication date 10 July 2007

Last updated 24 July 2024


Ubuntu priority

The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.

Status

Package Ubuntu Release Status
linux-source-2.6.20 7.04 feisty
Fixed 2.6.20-16.31
6.10 edgy Not in release
6.06 LTS dapper Not in release

References

Related Ubuntu Security Notices (USN)

    • USN-510-1
    • Linux kernel vulnerabilities
    • 31 August 2007

Other references