oss-sec mailing list archives

CVE Request: vtun: denial-of-service: high CPU usage after SIGHUP


From: Salvatore Bonaccorso <carnil () debian org>
Date: Tue, 26 Apr 2016 07:20:13 +0200

Hi

There exists a denial-of-service vulnerability in vtun, resulting in
high CPU usage after SIGHUP to a vtun client process.

Debian Bugreport: https://bugs.debian.org/818489 (contains proposed
patch)

Additional references:

https://bugzilla.redhat.com/show_bug.cgi?id=1319858
https://lists.fedoraproject.org/pipermail/package-announce/2016-April/181383.html

Could you assign a CVE for this issue?

Regards,
Salvatore


Current thread: