Red Hat Bugzilla – Bug 243262
CVE-2007-2525 PPPoE socket PPPIOCGCHAN denial of service
Last modified: 2016-05-19 11:48:12 EDT
A vulnerability has been reported in the Linux Kernel, which potentially can be
exploited by malicious, local users to cause a DoS (Denial of Service).
The vulnerability is caused due to a memory leak when releasing PPPoE sockets
after they are connected, but before the "PPPIOCGCHAN" ioctl is called. This can
be exploited to cause a DoS due to memory exhaustion.
committed in stream rhel‑4.5.z build 55.0.1
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.