Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1573

Опубликовано: 02 фев. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.9

Описание

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.

РелизСтатусПримечание
devel

not-affected

2.6.39-0.0
hardy

released

2.6.24-29.95
lucid

released

2.6.32-32.62
maverick

ignored

end of life, was pending
natty

not-affected

2.6.37-2.9
oneiric

not-affected

2.6.39-0.0
precise

not-affected

3.1.0-1.1
quantal

not-affected

2.6.39-0.0
raring

not-affected

2.6.39-0.0
upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

DNE

natty

DNE

oneiric

DNE

precise

not-affected

3.2.0-1600.1
quantal

not-affected

3.2.0-1602.5
raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.32-316.30
maverick

ignored

end of life
natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.31-611.29
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

ignored

end of life
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.38-1.27~lucid1
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

not-affected

maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

DNE

oneiric

DNE

precise

not-affected

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

DNE

oneiric

DNE

precise

not-affected

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.32-217.34
maverick

released

2.6.32-417.34
natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

raring

DNE

upstream

released

2.6.34~rc6

Показывать по

РелизСтатусПримечание
devel

not-affected

2.6.38-1309.13
hardy

DNE

lucid

DNE

maverick

ignored

end of life, was pending
natty

not-affected

2.6.38-1201.2
oneiric

not-affected

2.6.38-1309.13
precise

not-affected

3.0.0-1401.2
quantal

not-affected

2.6.38-1309.13
raring

not-affected

2.6.38-1309.13
upstream

released

2.6.34~rc6

Показывать по

EPSS

Процентиль: 72%
0.00751
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

redhat
около 15 лет назад

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.

CVSS3: 5.9
nvd
больше 13 лет назад

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.

CVSS3: 5.9
debian
больше 13 лет назад

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip ...

CVSS3: 5.9
github
около 3 лет назад

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.

oracle-oval
около 14 лет назад

ELSA-2011-2015: Oracle Linux 6 Unbreakable Enterprise kernel security fix update (IMPORTANT)

EPSS

Процентиль: 72%
0.00751
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Уязвимость CVE-2011-1573