CVE-2008-2136 - Seminary Brother


Memory leak in the ipip6_rcv function in net/ipv6/sit.c in the Linux kernel 2.4 before and 2.6 before allows remote attackers to cause a denial of service (memory consumption) via network traffic to a Simple Internet Transition (SIT) tunnel interface related to the pskb_may_pull and kfree_skb functions and management of an skb reference count.