Upstream information

CVE-2012-4444 at MITRE

Description

The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.

SUSE information

CVSS v2 Scores
  National Vulnerability Database
Base Score 4.96
Vector AV:N/AC:L/Au:N/C:N/I:P/A:N
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact Partial
Availability Impact None
SUSE Bugzilla entry: 789831 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Server 11 SP1-LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-pae >= 0_2.6.32.59_0.13-0.3.163
  • btrfs-kmp-xen >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-pae >= 0_2.6.32.59_0.13-7.9.130
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.9-7.9.118
  • hyper-v-kmp-default >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-pae >= 0_2.6.32.59_0.13-0.18.39
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.9-0.18.37
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-default-man >= 2.6.32.59-0.15.2
  • kernel-ec2 >= 2.6.32.59-0.9.1
  • kernel-ec2-base >= 2.6.32.59-0.9.1
  • kernel-ec2-devel >= 2.6.32.59-0.9.1
  • kernel-pae >= 2.6.32.59-0.15.2
  • kernel-pae-base >= 2.6.32.59-0.15.2
  • kernel-pae-devel >= 2.6.32.59-0.15.2
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
  • kernel-xen >= 2.6.32.59-0.9.1
  • kernel-xen-base >= 2.6.32.59-0.9.1
  • kernel-xen-devel >= 2.6.32.59-0.9.1
  • xen-kmp-default >= 4.0.3_21548_18_2.6.32.59_0.19-0.9.17
  • xen-kmp-pae >= 4.0.3_21548_16_2.6.32.59_0.15-0.5.26
  • xen-kmp-trace >= 4.0.3_21548_18_2.6.32.59_0.19-0.9.17
Patchnames:
slessp1-kernel
SUSE Linux Enterprise Server 10 SP3 LTSS for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8755
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-xen >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.9-7.9.118
  • hyper-v-kmp-default >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.9-0.18.37
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-ec2 >= 2.6.32.59-0.9.1
  • kernel-ec2-base >= 2.6.32.59-0.9.1
  • kernel-ec2-devel >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
  • kernel-xen >= 2.6.32.59-0.9.1
  • kernel-xen-base >= 2.6.32.59-0.9.1
  • kernel-xen-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8849
SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-smp >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8587
SLE SDK 10 SP4 for X86-64
  • kernel-debug >= 2.6.16.60-0.103.1
  • kernel-kdump >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8587
SUSE Linux Enterprise Server 10 SP4 for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.103.1
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-kdump >= 2.6.16.60-0.103.1
  • kernel-smp >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8587
SUSE Linux Enterprise Server 10 SP4 for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8586
SUSE Linux Enterprise Desktop 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.103.1
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-smp >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
  • kernel-xenpae >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8583
SLE SDK 10 SP4 for x86
  • kernel-debug >= 2.6.16.60-0.103.1
  • kernel-kdump >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
  • kernel-xenpae >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8583
SUSE Linux Enterprise Server 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.103.1
  • kernel-debug >= 2.6.16.60-0.103.1
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-kdump >= 2.6.16.60-0.103.1
  • kernel-kdumppae >= 2.6.16.60-0.103.1
  • kernel-smp >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
  • kernel-vmi >= 2.6.16.60-0.103.1
  • kernel-vmipae >= 2.6.16.60-0.103.1
  • kernel-xen >= 2.6.16.60-0.103.1
  • kernel-xenpae >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8583
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
  • kernel-pae-extra >= 2.6.32.59-0.9.1
  • kernel-xen-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8850
SLE SDK 10 SP4 for IBM iSeries and IBM pSeries
  • kernel-kdump >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8585
SUSE Linux Enterprise Server 10 SP4 for IBM POWER
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-iseries64 >= 2.6.16.60-0.103.1
  • kernel-kdump >= 2.6.16.60-0.103.1
  • kernel-ppc64 >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8585
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8851
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8756
SLE SDK 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8584
SUSE Linux Enterprise Server 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.103.1
  • kernel-default >= 2.6.16.60-0.103.1
  • kernel-source >= 2.6.16.60-0.103.1
  • kernel-syms >= 2.6.16.60-0.103.1
Builds
ZYPP Patch Nr: 8584
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
  • kernel-xen-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8852
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-pae >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-xen >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-pae >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.9-7.9.118
  • hyper-v-kmp-default >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-pae >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.9-0.18.37
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-ec2 >= 2.6.32.59-0.9.1
  • kernel-ec2-base >= 2.6.32.59-0.9.1
  • kernel-ec2-devel >= 2.6.32.59-0.9.1
  • kernel-pae >= 2.6.32.59-0.9.1
  • kernel-pae-base >= 2.6.32.59-0.9.1
  • kernel-pae-devel >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
  • kernel-xen >= 2.6.32.59-0.9.1
  • kernel-xen-base >= 2.6.32.59-0.9.1
  • kernel-xen-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8847
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-default-man >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8848
SUSE Linux Enterprise Server 10 SP3 LTSS for x86
  • kernel-bigsmp >= 2.6.16.60-0.113.1
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-kdumppae >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-vmi >= 2.6.16.60-0.113.1
  • kernel-vmipae >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
  • kernel-xenpae >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8754