CVE-2012-0207

high
Published 2012-05-17 · Modified 2026-04-29
CVSS v3
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS v2
7.8
VIR risk
7.5

Description

The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and panic) via IGMP packets.

Predictions

Exploit likelihood
83%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: security@debian.org — https://github.com/torvalds/linux/commit/a8c1f65c79cbbb2f7da782d4c9d15639a9b94b27

vendor Authored 2026-05-27

Vendor advisory: security@debian.org — https://github.com/torvalds/linux/commit/25c413ad0029ea86008234be28aee33456e53e5b

vendor Authored 2026-05-27

Vendor advisory: security@debian.org — https://bugzilla.redhat.com/show_bug.cgi?id=772867

vendor Authored 2026-05-27

Vendor advisory: security@debian.org — http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.1

OS impact

OSVersionStatusFixed in
linux linux-kernelaffected3.0.17
redhat rhel5.6affected

References

CWEs

CWE-369

Verify integrity in audit chain (admin only). AS-IS.