The ECNE chunk handling in Linux SCTP (lksctp) prior to 2.6.17 allows remote malicious users to cause a denial of service (kernel panic) via an unexpected chunk when the session is in CLOSED state.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lksctp lksctp 2.6.0_test1_0.7.2 |
||
lksctp lksctp 2.6.2_0.9.0 |
||
lksctp lksctp 2.6.15_1.0.5 |
||
lksctp lksctp 2.6.0_test4_0.7.3 |
||
lksctp lksctp 2.6.13_1.0.3 |
||
lksctp lksctp 2.6.16_1.0.6 |
||
lksctp lksctp 2.6.10_1.0.2 |
||
lksctp lksctp 2.6.6_1.0.1 |
||
lksctp lksctp 2.6.14_1.0.4 |
||
lksctp lksctp 2.6.3_1.0.0 |