security flaw
Published Sep 11, 2006
7.8
HIGHCVSS 2.0
EPSS 4.26%
Description
The Unidirectional Lightweight Encapsulation (ULE) decapsulation component in dvb-core/dvb_net.c in the dvb driver in the Linux kernel 2.6.17.8 allows remote attackers to cause a denial of service (crash) via an SNDU length of 0 in a ULE packet.
Affected products
No data.
- 2.6.17.8
No data.
Red Hat Enterprise Linux 4
kernel-0:2.6.9-42.0.3.EL
Fixed · RHSA-2006:0689
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | kernel-0:2.6.9-42.0.3.EL | Fixed | RHSA-2006:0689 |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat is aware of this issue and is tracking it via the following bug for Red Hat Enterprise Linux 4: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=204912 This issue does not affect Red Hat Enterprise Linux 2.1 or 3.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:N/I:N/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 2, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (16 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 2, 2026 | 4.26% (0.04262) | 90.77th | v5 (v2026.06.15) |
| Jun 15, 2026 | 4.01% (0.04012) | 89.20th | v5 (v2026.06.15) |
| Mar 30, 2025 | 13.10% (0.13097) | 93.49th | v4 (v2025.03.14) |
| Mar 29, 2025 | 10.84% (0.10842) | 88.91th | v4 (v2025.03.14) |
| Mar 19, 2025 | 13.10% (0.13097) | 93.27th | v4 (v2025.03.14) |
| Mar 17, 2025 | 8.34% (0.08336) | 91.66th | v4 (v2025.03.14) |
| Dec 17, 2024 | 8.15% (0.08155) | 94.33th | v3 (v2023.03.01) |
| Nov 7, 2023 | 9.27% (0.09273) | 94.04th | v3 (v2023.03.01) |
| Aug 23, 2023 | 11.01% (0.11010) | 94.40th | v3 (v2023.03.01) |
| Jul 16, 2023 | 9.70% (0.09701) | 94.01th | v3 (v2023.03.01) |
| Jun 8, 2023 | 10.96% (0.10960) | 94.28th | v3 (v2023.03.01) |
| May 1, 2023 | 11.45% (0.11448) | 94.36th | v3 (v2023.03.01) |
| Mar 7, 2023 | 11.09% (0.11092) | 94.19th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.36% (0.04358) | 88.02th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.36% (0.04358) | 86.83th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.36% (0.04358) | 70.59th | v2 (v2022.01.01) |
No CWE recorded.
References (26)
- http://lkml.org/lkml/2006/8/20/278 mailing-listx_refsource_MLISTPatch
- http://secunia.com/advisories/21820 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/22292 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/22382 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/22441 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/22945 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/23474 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/25691 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/25714 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26139 third-party-advisoryx_refsource_SECUNIA
- http://support.avaya.com/elmodocs2/security/ASA-2006-249.htm x_refsource_CONFIRM
- http://www.debian.org/security/2007/dsa-1304 vendor-advisoryx_refsource_DEBIAN
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:182 vendor-advisoryx_refsource_MANDRIVA
- http://www.novell.com/linux/security/advisories/2006_79_kernel.html vendor-advisoryx_refsource_SUSE
- http://www.redhat.com/support/errata/RHSA-2006-0689.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/448998/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/471457 mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/19939 vdb-entryx_refsource_BIDPatch
- http://www.ubuntu.com/usn/usn-489-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2006/3551 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2006-4623 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1618199 Issue Tracking
- https://issues.rpath.com/browse/RPL-721 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2006-4623
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9775 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2006-4623
Change history (0)
No recorded changes yet.