CVE-2012-2744

high
Published 2012-08-09 · Modified 2026-04-29
CVSS v3
CVSS v2
7.8
VIR risk
7.8

Description

net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2012-2744

vendor Authored 2026-05-27

Vendor advisory: secalert@redhat.com — https://github.com/torvalds/linux/commit/9e2dcf72023d1447f09c47d77c99b0c49659e5ce

OS impact

OSVersionStatusFixed in
linux linux-kernelaffected
linux linux-kernel2.6.33affected
linux linux-kernel2.6.33.1affected
linux linux-kernel2.6.33.2affected
linux linux-kernel2.6.33.3affected
linux linux-kernel2.6.33.4affected
linux linux-kernel2.6.33.5affected
linux linux-kernel2.6.33.6affected
linux linux-kernel2.6.33.7affected
linux linux-kernel2.6.33.8affected
linux linux-kernel2.6.33.9affected
linux linux-kernel2.6.33.10affected
linux linux-kernel2.6.33.11affected
linux linux-kernel2.6.33.12affected
linux linux-kernel2.6.33.13affected
linux linux-kernel2.6.33.14affected
linux linux-kernel2.6.33.15affected
linux linux-kernel2.6.33.16affected
linux linux-kernel2.6.33.17affected
linux linux-kernel2.6.33.18affected
linux linux-kernel2.6.33.19affected
debian debianbookwormfixed2.6.34-1
debian debianbullseyefixed2.6.34-1
debian debianforkyfixed2.6.34-1
debian debiansidfixed2.6.34-1
debian debiantrixiefixed2.6.34-1

References

Verify integrity in audit chain (admin only). AS-IS.