CVE-2006-2446
Race condition between the kfree_skb and __skb_unlink functions in the socket buffer handling in Linux kernel 2.6.9, and possibly other versions, allows remote attackers to cause a denial of service (crash), as demonstrated using the TCP stress tests from the LTP test suite.
Date published : 2006-08-15
http://www.securityfocus.com/bid/19475
http://support.avaya.com/elmodocs2/security/ASA-2006-200.htm