Fixed
Created: Dec 28, 2016
Updated: May 29, 2018
Resolved Date: Jan 21, 2017
Found In Version: unknown
Fix Version: 9.0.0.3
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Kernel
The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a denial of service (integer overflow, out-of-bounds write, and GPF) or possibly have unspecified other impact via a crafted application that makes socket, connect, and writev system calls, related to net/ipv6/netfilter/nf_conntrack_reasm.c and net/ipv6/netfilter/nf_defrag_ipv6_hooks.c.
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-9755