7.1
CVSSv2

CVE-2013-4348

Published: 04/11/2013 Updated: 19/05/2023
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 633
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel up to and including 3.12 allows remote malicious users to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

canonical ubuntu linux 13.10

canonical ubuntu linux 12.04

Vendor Advisories

Synopsis Important: kernel-rt security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel-rt packages that fix multiple security issues and one bugare now available for Red Hat Enterprise MRG 24The Red Hat Security Response Team has rated this update as havingimportant secu ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
The Linux kernel before 312, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows local users to cause a denial of service (memory corruption and system crash) or possibly gain privileges via a crafted application that uses the UDP_CORK option in a setsockopt system call and sends both ...