Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3772

Опубликовано: 02 мар. 2022
Источник: debian
EPSS Низкий

Описание

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.14.16-1package
linuxfixed5.10.84-1bullseyepackage
linuxfixed4.19.235-1busterpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2000694

EPSS

Процентиль: 35%
0.00139
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

CVSS3: 5.9
redhat
почти 4 года назад

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

CVSS3: 6.5
nvd
больше 3 лет назад

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

CVSS3: 6.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 6.5
github
больше 3 лет назад

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

EPSS

Процентиль: 35%
0.00139
Низкий