>> Linux Kernel Fragmented IPv6 Packets Handling Security Bypass Vulnerability
Title : Linux Kernel Fragmented IPv6 Packets Handling Security Bypass Vulnerability VUPEN ID : VUPEN/ADV-2006-4386 CVE ID : CVE-2006-4572
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-11-07
Technical Description
A vulnerability has been identified in Linux Kernel, which could be exploited by attackers to bypass security restrictions. This flaw is due to errors in the Netfliter functions "ip6_packet_match()" and "match()" that fail to properly validate fragmented IPv6 packets, which could be exploited by remote attackers to bypass certain filtering rules via a specially crafted packet.