Red Hat Bugzilla – Bug 192635
CVE-2006-1857 SCTP HB-ACK chunk overflow
Last modified: 2007-11-30 17:07:25 EST
If SCTP receives a badly formatted HB-ACK chunk, it is possible that we may access invalid memory and potentially have a buffer overflow. The upstream fix can be found here: http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=dd2d1c6f2958d027e4591ca5d2a04dfe36ca6512
This is the link for the real upstream fix: http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=a601266e4f3c479790f373c2e3122a766d123652
committed in stream U4 build 39.1. A test kernel with this patch is available from http://people.redhat.com/~jbaron/rhel4/
Patch is in -42.EL.
An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on the solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHSA-2006-0575.html