CVE-2023-1206

CVSS v3.1 5.7 (Medium)
57% Progress
EPSS 0.04 % (5th)
0.04% Progress
Affected Products 3
Advisories 41

A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CPU usage of the server that accepts IPV6 connections up to 95%.

Weaknesses
CWE-400
Uncontrolled Resource Consumption
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2023-06-30 22:15:09
(14 months ago)
Updated Date
2024-01-11 19:15:08
(8 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel prior 6.5 version cpe:2.3:o:linux:linux_kernel < 6.5

Configuration #2

    CPE23 From Up To
  Redhat Enterprise Linux 8.0 cpe:2.3:o:redhat:enterprise_linux:8.0
  Redhat Enterprise Linux 9.0 cpe:2.3:o:redhat:enterprise_linux:9.0

Configuration #3

    CPE23 From Up To
  Fedoraproject Fedora 38 cpe:2.3:o:fedoraproject:fedora:38
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...