The ip6_find_1stfragopt function in net/ipv6/output_core.c in the Linux kernel through 4.12.3 allows local users to cause a denial of service (integer overflow and infinite loop) by leveraging the ability to open a raw socket.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 4.12.3.x |