Skip to navigation

CVE Database

CVE-2009-1385

Impact:Important (classification)
Public:April 25 2007
Bugzilla: 502981: CVE-2009-1385 kernel: e1000_clean_rx_irq() denial of service

Details

The MITRE CVE dictionary describes this issue as:

Integer underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30-rc8, the e1000e driver in the Linux kernel, and Intel Wired Ethernet (aka e1000) before 7.5.5 allows remote attackers to cause a denial of service (panic) via a crafted frame size.

Find out more about CVE-2009-1385 from the MITRE CVE dictionary and NIST NVD.


CVSS v2 metrics

Base Score:7.1Base Metrics:AV:N/AC:M/Au:N/C:N/I:N/A:C
Access Vector:Network Confidentiality Impact:None
Access Complexity:Medium Integrity Impact:None
Authentication:None Availability Impact:Complete

Find out more about Red Hat support for the Common Vulnerability Scoring System (CVSS).


Red Hat security errata

Platform Errata Release Date
Red Hat Enterprise Linux version 4 (kernel)RHSA-2009:1132June 30 2009
MRG Grid for RHEL 5 Server (kernel-rt)RHSA-2009:1157July 14 2009
Red Hat Enterprise Linux version 5 (kernel)RHSA-2009:1193August 04 2009
Red Hat Enterprise Linux EUS (v. 5.3 server) (kernel)RHSA-2009:1193August 04 2009
Red Hat Enterprise Linux version 3 (kernel)RHSA-2009:1550November 03 2009
Red Hat Enterprise Linux EUS (v. 5.2 server) (kernel)RHSA-2010:0079February 02 2010

This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Red Hat Security Response Team.