PublicDate: 2007-07-10 01:30:00 UTC Candidate: CVE-2007-3642 References: https://ubuntu.com/security/notices/USN-510-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3642 Description: The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_linux-source-2.6.20: DNE edgy_linux-source-2.6.20: DNE feisty_linux-source-2.6.20: released (2.6.20-16.31) devel_linux-source-2.6.20: DNE upstream_linux-source-2.6.20: needs-triage