cbcvebase.
CVE-2015-2922
published 2015-05-27

CVE-2015-2922: The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before…

PriorityP418low3.3CVSS 2.0
AVAACLAuNCNINAP
EPSS
3.05%
86.1th percentile
The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.

Affected

22 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianlinux< linux 3.16.7-ckt9-1 (bookworm)linux 3.16.7-ckt9-1 (bookworm)
debiannetwork-manager< network-manager 1.0.2-1 (bookworm)network-manager 1.0.2-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
googleandroid
linuxlinux_kernel<= 3.19.5
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.16.7-ckt9-13.16.7-ckt9-1
linuxlinux_kernel>= 0 < 3.13.0-51.843.13.0-51.84
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
network-manager_projectnetwork-manager>= 0 < 1.0.2-11.0.2-1
networkmanager_projectnetworkmanager<= 1.0.7
oraclelinux
oraclesolaris
redhatenterprise_mrg

CVSS provenance

nvdv2.03.3LOWAV:A/AC:L/Au:N/C:N/I:N/A:P
osv6.9MEDIUM
vendor_ubuntu6.9MEDIUM
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.