Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-4667

Опубликовано: 03 июл. 2014
Источник: debian
EPSS Средний

Описание

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed3.14.9-1package
linux-2.6removedpackage
linux-2.6fixed2.6.32-48squeeze8squeezepackage

Примечания

  • Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=d3217b15a19a4779c39b212358a5c71d725822ee (v3.16-rc1)

EPSS

Процентиль: 94%
0.14138
Средний

Связанные уязвимости

ubuntu
почти 11 лет назад

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

redhat
около 11 лет назад

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

nvd
почти 11 лет назад

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

github
около 3 лет назад

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

oracle-oval
почти 11 лет назад

ELSA-2014-3069: unbreakable enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 94%
0.14138
Средний