A flaw was found in the way ip packets with ihl of zero were processed in the skb_flow_dissect() function in the Linux kernel. A remote attacker could use this flaw to cause inifinite loop in the kernel. Acknowledgements: This issue was found by Jason Wang of Red Hat.
Statement: This issue does not affect Linux kernel packages as shipped with Red Hat Enterprise Linux 5 and 6. Future Linux kernel updates for Red Hat Enterprise Linux MRG 2 might address this issue.
This issue has been addressed in following products: MRG for RHEL-6 v.2 Via RHSA-2013:1490 https://rhn.redhat.com/errata/RHSA-2013-1490.html
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1025647]
http://thread.gmane.org/gmane.linux.kernel/1588387
kernel-3.11.6-201.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report.
kernel-3.11.7-300.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.
kernel-3.11.7-100.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report.
Upstream commit 6f092343855a71e03b8d209815d8c45bf3a27fcd