CVE-2011-1573

CVSS v3.1 5.9 (Medium)
59% Progress
CVSS v2.0 4.3 (Medium)
43% Progress
EPSS 0.97 % (84th)
0.97% Progress
Affected Products 1
Advisories 11

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.

Weaknesses
CWE-682
Incorrect Calculation
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2012-02-02 04:09:47
(12 years ago)
Updated Date
2023-02-13 01:19:15
(19 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel prior 2.6.34 version cpe:2.3:o:linux:linux_kernel < 2.6.34
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...