The ip6_find_1stfragopt function in net/ipv6/output_core.c in the Linux kernel through 4.12.3 allows local users to cause a denial of service (integer overflow and infinite loop) by leveraging the ability to open a raw socket.
Product | Vendor | Version |
---|---|---|
Linux kernel versions up to and including 4.12 | n/a | 9.16.3.19 |