Package: linux-image
Severity: critical
Tags: security

According to debsecan and current CVEs is Debian vulnerable to
CVE-2007-1734. Because this is remote exploitable i set the priority of
this bug report to critical.

Description of this security issue:

nf_conntrack in netfilter in the Linux kernel before 2.6.20.3 does not
set nfctinfo during reassembly of fragmented packets, which leaves the
default value as IP_CT_ESTABLISHED and might allow remote attackers to
bypass certain rulesets using IPv6 fragments.

This security issue is considered one with high severity.
Security team gets CC.

Best Regards

Patrick

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to