9
CVSSv2

CVE-2006-1857

Published: 22/05/2006 Updated: 11/10/2017
CVSS v2 Base Score: 9 | Impact Score: 8.5 | Exploitability Score: 10
VMScore: 801
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:C

Vulnerability Summary

Buffer overflow in SCTP in Linux kernel prior to 2.6.16.17 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a malformed HB-ACK chunk.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.0

linux linux kernel 2.6.1

linux linux kernel 2.6.10

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.7

linux linux kernel 2.6.12.1

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12

linux linux kernel 2.6.13

linux linux kernel 2.6.14.1

linux linux kernel 2.6.14.2

linux linux kernel 2.6.14

linux linux kernel 2.6.15

linux linux kernel 2.6.16.12

linux linux kernel 2.6.16.13

linux linux kernel 2.6.11.8

linux linux kernel 2.6.11

linux linux kernel 2.6.12.3

linux linux kernel 2.6.12.4

linux linux kernel 2.6.14.3

linux linux kernel 2.6.14.4

linux linux kernel 2.6.15.1

linux linux kernel 2.6.15.2

linux linux kernel 2.6.16.14

linux linux kernel 2.6.16.15

linux linux kernel 2.6.16.8

linux linux kernel 2.6.16.9

linux linux kernel 2.6.2

linux linux kernel 2.6.4

linux linux kernel 2.6.6

linux linux kernel 2.6.8

linux linux kernel 2.6.9

linux linux kernel 2.6_test9_cvs

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.5

linux linux kernel 2.6.13.3

linux linux kernel 2.6.13.4

linux linux kernel 2.6.15.5

linux linux kernel 2.6.16.10

linux linux kernel 2.6.16.11

linux linux kernel 2.6.16.3

linux linux kernel 2.6.16.4

linux linux kernel 2.6.16

linux linux kernel 2.6.3

linux linux kernel 2.6.5

linux linux kernel 2.6.7

linux linux kernel 2.6.16.5

linux linux kernel 2.6.16.6

linux linux kernel 2.6.16.7

linux linux kernel 2.6.11.11

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.6

linux linux kernel 2.6.13.1

linux linux kernel 2.6.13.2

linux linux kernel 2.6.14.5

linux linux kernel 2.6.15.3

linux linux kernel 2.6.15.4

linux linux kernel 2.6.16.1

linux linux kernel 2.6.16.16

linux linux kernel 2.6.16.2

Vendor Advisories

An integer overflow was discovered in the do_replace() function A local user process with the CAP_NET_ADMIN capability could exploit this to execute arbitrary commands with full root privileges However, none of Ubuntu’s supported packages use this capability with any non-root user, so this only affects you if you use some third party software l ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-3359 Franz Filz discovered that some socket calls permit causing inconsistent reference count ...