CVE Database
/

CVE-2014-4667

Back to search

CVE-2014-4667

Published: Jul 3, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

VendorProductVersions

n/a

n/a

affected
n/a

References

SUSE-SU-2014:1316
vendor-advisory
x_refsource_SUSE
59790
third-party-advisory
x_refsource_SECUNIA
USN-2335-1
vendor-advisory
x_refsource_UBUNTU
USN-2334-1
vendor-advisory
x_refsource_UBUNTU
SUSE-SU-2014:1319
vendor-advisory
x_refsource_SUSE
60564
third-party-advisory
x_refsource_SECUNIA
68224
vdb-entry
x_refsource_BID
59777
third-party-advisory
x_refsource_SECUNIA
60596
third-party-advisory
x_refsource_SECUNIA
DSA-2992
vendor-advisory
x_refsource_DEBIAN
SUSE-SU-2015:0812
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now