Oval Definition:oval:org.mitre.oval:def:13226
Revision Date:2011-12-05Version:4
Title:ESX third party update for Service Console kernel
Description:drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame, which allows remote attackers to bypass packet filters via a large packet with a crafted payload. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1385.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-4536
Platform(s):VMWare ESX Server 3.5
Product(s):
Definition Synopsis
  • VMware ESX Server 3.5.0 is installed
  • AND Patch ESX350-201105404-SG does not exist
  • BACK