CVE-2014-9428

The batadv_frag_merge_packets function in net/batman-adv/fragmentation.c in the B.A.T.M.A.N. implementation in the Linux kernel through 3.18.1 uses an incorrect length field during a calculation of an amount of memory, which allows remote attackers to cause a denial of service (mesh-node system crash) via fragmented packets.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Information

Published : 2015-01-02 21:59

Updated : 2015-04-18 01:59


NVD link : CVE-2014-9428

Mitre link : CVE-2014-9428


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-399

Resource Management Errors