Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h74m-54fh-xp9p

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.

The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.

Ссылки

EPSS

Процентиль: 94%
0.14696
Средний

Дефекты

CWE-476

Связанные уязвимости

ubuntu
почти 11 лет назад

The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.

redhat
почти 11 лет назад

The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.

nvd
почти 11 лет назад

The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.

debian
почти 11 лет назад

The sctp_assoc_update function in net/sctp/associola.c in the Linux ke ...

oracle-oval
больше 10 лет назад

ELSA-2014-1724: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 94%
0.14696
Средний

Дефекты

CWE-476