2
Candidate: CVE-2007-2480
4
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=de34ed91c4ffa4727964a832c46e624dd1495cf5
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2480
7
The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and
8
earlier does not prevent a bind to a port with a local address when there
9
is already a bind to that port with a wildcard local address, which might
10
allow local users to intercept local traffic for daemons or other
14
kees> Cannot reproduce. Is this really an issue for kernels prior to 2.6.21?
19
upstream_linux: released (2.6.22)
20
dapper_linux-source-2.6.15: not-affected
21
edgy_linux-source-2.6.17: not-affected
22
feisty_linux-source-2.6.20: ignored (not reproducable)
23
gutsy_linux-source-2.6.22: released (2.6.22-12.39)
24
hardy_linux: not-affected (2.6.22-12.39)
25
devel_linux: not-affected (2.6.22-12.39)
26
upstream_linux-source-2.6.15:
27
upstream_linux-source-2.6.17:
28
upstream_linux-source-2.6.20:
29
upstream_linux-source-2.6.22: