CVE-2002-2185 — Linux vulnerability
10 documents5 sources
Severity
4.9MEDIUMNVD
EPSS
0.9%
top 24.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateMay 3
Description
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
CVSS vector
AV:L/AC:L/C:N/I:N/A:CExploitability: 3.9 | Impact: 6.9
Affected Packages6 packages
Also affects: Debian Linux 2.2, Enterprise Linux 3.0, 4.0
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-7rp7-7c38-2w9q: The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet add↗2022-05-03
CVEList▶
CVE-2002-2185: The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet add↗2005-11-16