Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2009-4272 Details

Description

A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that force collisions in the IPv4 routing hash table, and trigger a routing "emergency" in which a hash chain is too long. NOTE: this is related to an issue in the Linux kernel before 2.6.31, when the kernel routing cache is disabled, involving an uninitialized pointer and a panic.

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=73e42897e8e5619eacb787d2ce69be12f47cfc21 CVEBroken Link
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=b6280b47a7a42970d098a3059f4ebe7e55e90d8d CVEBroken Link
https://bugzilla.redhat.com/show_bug.cgi?id=545411 CVEExploitIssue Tracking
https://exchange.xforce.ibmcloud.com/vulnerabilities/55808 CVEThird Party AdvisoryVDB Entry
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11167 CVEBroken Link

see all 24 references

Weakness Enumeration

CWE-IDCWE NameSource
CWE-667Improper Locking[email protected]

Affected Products

ProductVersions

Change History

11 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2009-4272
NVD Published Date:
Jan 27, 2010
NVD Last Modified:
Jun 16, 2026
Source:
[email protected]
CVE-2009-4272 Details - Not Deferred