CVE-2005-3272
Summary
| CVE | CVE-2005-3272 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-10-21 01:02:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets. |
Risk And Classification
Primary CVSS: v2.0 5 from [email protected]
AV:N/AC:L/Au:N/C:N/I:P/A:N
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:N/AC:L/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | 2.6.0 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.1 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.10 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.1 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.10 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.11 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.12 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.2 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.3 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.4 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.5 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.6 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.7 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.8 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.11.9 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.2 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.3 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.4 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.5 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.6 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.7 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.8 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.8.1 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.6.9 | 2.6.20 | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Advisories - Mandriva Linux | af854a3a-2127-422b-91ae-364da2661108 | www.mandriva.com | |
| Debian -- Security Information -- DSA-922-1 kernel-source-2.6.8 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| linux.bkbits.net/linux-2.6/cset%40429a310bRFOXOmZvKaGXW8A5Qd9F1A | af854a3a-2127-422b-91ae-364da2661108 | linux.bkbits.net | |
| Linux Kernel Network Bridge Incorrectly Forwarded Packets Information Disclosure Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Red Hat update for kernel - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| USN-219-1: Linux kernel vulnerabilities | Ubuntu security notices | af854a3a-2127-422b-91ae-364da2661108 | usn.ubuntu.com | |
| ASA-2006-161 (RHSA-2006-0493) | af854a3a-2127-422b-91ae-364da2661108 | support.avaya.com | |
| rhn.redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | |
| Secunia - Advisories - Debian update for kernel-source-2.6.8 | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Avaya Products Linux Kernel Multiple Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| CONFIRM:http://linux.bkbits.net:8080/linux-2.6/cset@429a310bRFOXOmZvKaGXW8A5Qd9F1A | MITRE | linux.bkbits.net | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.