The sctp_association_free function in net/sctp/associola.c in the Linux kernel prior to 3.15.2 does not properly manage a certain backlog value, which allows remote malicious users to cause a denial of service (socket outage) via a crafted SCTP packet.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linux linux kernel |
||
suse linux enterprise desktop 11 |
||
suse linux enterprise server 11 |
||
suse linux enterprise real time extension 11 |
||
suse linux enterprise server 10 |
||
canonical ubuntu linux 12.04 |
||
debian debian linux 7.0 |