Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.
2004-07-07T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sgi | propack | 3.0 | Yes |
Operating System | linux | linux_kernel | 2.4.22 | Yes |
Operating System | linux | linux_kernel | 2.4.23 | Yes |
Operating System | linux | linux_kernel | 2.4.23 | Yes |
Operating System | linux | linux_kernel | 2.4.23_ow2 | Yes |
Operating System | linux | linux_kernel | 2.4.24 | Yes |
Operating System | linux | linux_kernel | 2.4.24_ow1 | Yes |
Operating System | linux | linux_kernel | 2.4.25 | Yes |
Operating System | linux | linux_kernel | 2.6.1 | Yes |
Operating System | linux | linux_kernel | 2.6.1 | Yes |
Operating System | linux | linux_kernel | 2.6.1 | Yes |
Operating System | linux | linux_kernel | 2.6.2 | Yes |
Operating System | linux | linux_kernel | 2.6.3 | Yes |
Operating System | slackware | slackware_linux | 9.1 | Yes |
Operating System | slackware | slackware_linux | current | Yes |