Bug 132741 (CVE-2005-3272)

Summary: VUL-0: CVE-2005-3272: kernel: remote attackers can poison the bridge forwardiung table
Product: [Novell Products] SUSE Security Incidents Reporter: Marcus Meissner <meissner>
Component: IncidentsAssignee: Olaf Kirch <okir>
Status: RESOLVED WONTFIX QA Contact: Security Team bot <security-team>
Severity: Major    
Priority: P5 - None CC: security-team
Version: unspecified   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard: CVE-2005-3272: CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:P/A:N)
Found By: Other Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Description Marcus Meissner 2005-11-08 16:24:20 UTC
CVE-2005-3272

Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.

http://linux.bkbits.net:8080/linux-2.6/cset@429a310bRFOXOmZvKaGXW8A5Qd9F1A
Comment 1 Marcus Meissner 2005-11-08 16:29:19 UTC
code in sles9 looks different a bit, but I guess it is affected.

olaf, I think we need to fix this, do you agree?
Comment 2 Marcus Meissner 2005-11-09 09:36:32 UTC
remote -> major
Comment 3 Olaf Kirch 2005-11-09 11:50:02 UTC
Looking "a bit different" sure is an understatement. Backporting this
fix is not trivial at all. In fact doing so may require a partial backport
from 2.6.12 (at least the br_fdb_update function may need to be backported,
and that seems to pull in some additional stuff).

I am actually reluctant to include this change at this time in the
product release cycle. Such a change needs more testing.

Please comment.
Comment 4 Marcus Meissner 2005-11-09 13:04:29 UTC
since this is affects the local lan this is not that problematic. (other ways of attacking the network are possible).

I guess we can leave out fixing for older products and just mark it fixed 
for the upcoming products.
Comment 5 Thomas Biege 2009-10-13 21:49:04 UTC
CVE-2005-3272: CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:P/A:N)