CVE-2011-1770

CVSS v3.1 7.5 (High)
75% Progress
CVSS v2.0 7.8 (High)
78% Progress
EPSS 2.86 % (91th)
2.86% Progress
Affected Products 2
Advisories 20

Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before 2.6.33.14 allows remote attackers to cause a denial of service via a Datagram Congestion Control Protocol (DCCP) packet with an invalid feature options length, which triggers a buffer over-read.

Weaknesses
CWE-191
Integer Underflow (Wrap or Wraparound)
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2011-06-24 20:55:03
(13 years ago)
Updated Date
2023-02-13 04:30:52
(19 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel prior 2.6.33.14 version cpe:2.3:o:linux:linux_kernel < 2.6.33.14

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 14 cpe:2.3:o:fedoraproject:fedora:14
  Fedoraproject Fedora 15 cpe:2.3:o:fedoraproject:fedora:15
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...