Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-4348

Опубликовано: 31 окт. 2013
Источник: redhat
CVSS2: 7.1
EPSS Низкий

Описание

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

Отчет

This issue does not affect Linux kernel packages as shipped with Red Hat Enterprise Linux 5 and 6. Future Linux kernel updates for Red Hat Enterprise Linux MRG 2 might address this issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kernelNot affected
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise MRG 2kernel-rtFixedRHSA-2013:149031.10.2013

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-228->CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=1007939kernel: net: deadloop path in skb_flow_dissect()

EPSS

Процентиль: 88%
0.04267
Низкий

7.1 High

CVSS2

Связанные уязвимости

ubuntu
почти 12 лет назад

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

nvd
почти 12 лет назад

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

debian
почти 12 лет назад

The skb_flow_dissect function in net/core/flow_dissector.c in the Linu ...

github
больше 3 лет назад

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

oracle-oval
около 11 лет назад

ELSA-2014-3049: unbreakable enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 88%
0.04267
Низкий

7.1 High

CVSS2