vendor:
by:
Julien TINNES
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name:
Affected Version From: 2.6.2001
Affected Version To: 2.6.2003
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2004
setsockopt proof of concept code
This proof of concept code demonstrates a buffer overflow vulnerability in the setsockopt function. It crashes the machine but does not provide a root shell. It can potentially be used for a rootshell exploit on machines with outdated kernels (2.6.1, 2.6.2, and 2.6.3).
Mitigation:
Update the kernel to a version that is not vulnerable to this buffer overflow.