CVE-2007-1357
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 14%
from disclosure to weapon0 days
Published on NVDApr 11
1st PoCApr 9
exploitation probability
14%top 4% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which triggers a BUG_ON call when an attempt is made to perform a checksum.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/29826⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://lists.suse.com/archive/suse-security-announce/2007-May/0001.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=235857http://secunia.com/advisories/24793http://secunia.com/advisories/24901http://secunia.com/advisories/25078http://secunia.com/advisories/25099http://secunia.com/advisories/25226http://secunia.com/advisories/25392http://secunia.com/advisories/25683http://secunia.com/advisories/25691http://secunia.com/advisories/25714http://secunia.com/advisories/25961