Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-8767

Опубликовано: 08 фев. 2016
Источник: nvd
CVSS3: 6.2
CVSS2: 4.9
EPSS Низкий

Описание

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.3 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00121
Низкий

6.2 Medium

CVSS3

4.9 Medium

CVSS2

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 6.2
ubuntu
больше 9 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

redhat
больше 10 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

CVSS3: 6.2
debian
больше 9 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not prope ...

CVSS3: 6.2
github
около 3 лет назад

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

oracle-oval
около 9 лет назад

ELSA-2016-3554: Unbreakable Enterprise kernel security update (MODERATE)

EPSS

Процентиль: 32%
0.00121
Низкий

6.2 Medium

CVSS3

4.9 Medium

CVSS2

Дефекты

CWE-362