CVE-2001-1572
The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets.
Date published : 2005-07-14
http://www.securityfocus.com/bid/3418
http://archives.neohapsis.com/archives/bugtraq/2001-10/0057.html