Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-8767

Опубликовано: 08 фев. 2016
Источник: debian
EPSS Низкий

Описание

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.3.1-1package
linuxfixed3.2.73-2+deb7u3wheezypackage
linux-2.6removedpackage

Примечания

  • https://git.kernel.org/linus/635682a14427d241bab7bbdeebb48a7d7b91638e (v4.3-rc4)

  • https://www.openwall.com/lists/oss-security/2016/01/11/4

EPSS

Процентиль: 32%
0.00121
Низкий

Связанные уязвимости

CVSS3: 6.2
ubuntu
больше 9 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

redhat
больше 10 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

CVSS3: 6.2
nvd
больше 9 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

CVSS3: 6.2
github
около 3 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

oracle-oval
около 9 лет назад

ELSA-2016-3554: Unbreakable Enterprise kernel security update (MODERATE)

EPSS

Процентиль: 32%
0.00121
Низкий