CVE-2007-4997

Impact:
Important
Public Date:
2007-10-02
CWE:
CWE-190
Bugzilla:
346341: CVE-2007-4997 kernel ieee80211 off-by-two integer underflow

The MITRE CVE dictionary describes this issue as:

Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cause a denial of service (crash) via a crafted SKB length value in a runt IEEE 802.11 frame when the IEEE80211_STYPE_QOS_DATA flag is set, aka an "off-by-two error."

Find out more about CVE-2007-4997 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (kernel) RHSA-2007:1104 2007-12-19
Red Hat Enterprise Linux 5 (kernel) RHSA-2007:0993 2007-11-29

Acknowledgements

Red Hat would like to credit Chris Evans for reporting this issue.

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.