Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).
CVE-2009-2698 — NULL Pointer Dereference in Kernel
Severity
7.8HIGHNVD
EPSS
26.1%
top 3.70%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedAug 27
Latest updateMay 2
Description
The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving the MSG_MORE flag and a UDP socket.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages8 packages
Also affects: Ubuntu Linux 6.06, 8.04, 8.10, 9.04, Enterprise Linux 4.8, 5.3, Fedora 10
Patches
🔴Vulnerability Details
3💥Exploits & PoCs
3Exploit-DB
▶
Exploit-DB
▶
Exploit-DB▶
Linux Kernel 2.6 < 2.6.19 (White Box 4 / CentOS 4.4/4.5 / Fedora Core 4/5/6 x86) - 'ip_append_data()' Ring0 Privilege Escalation (1)↗2009-08-31