cbcvebase.
CVE-2015-2922
published 2015-05-27

CVE-2015-2922: The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before…

low3.3CVSS 3.1
AVAACLAuNCNINAP
The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

Affected

22 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianlinux< linux 3.16.7-ckt9-1 (bookworm)linux 3.16.7-ckt9-1 (bookworm)
debiannetwork-manager< network-manager 1.0.2-1 (bookworm)network-manager 1.0.2-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
googleandroid
linuxlinux_kernel<= 3.19.5
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.13.0-51.843.13.0-51.84
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
networkmanager_projectnetworkmanager<= 1.0.7
oraclelinux
oraclesolaris
redhatenterprise_mrg

CVSS provenance

nvd3.3LOWAV:A/AC:L/Au:N/C:N/I:N/A:P
osv6.9MEDIUM