10
CVSSv2

CVE-2017-13715

Published: 29/08/2017 Updated: 17/01/2023
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The __skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel prior to 4.3 does not ensure that n_proto, ip_proto, and thoff are initialized, which allows remote malicious users to cause a denial of service (system crash) or possibly execute arbitrary code via a single crafted MPLS packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel