Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Karl Heiss

#47096de 53,635
5.4CVSS total
Vulnerabilidades · 1
PT-2013-3596
5.4
2013-06-21
Linux · Linux Kernel · CVE-2013-2206
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 3.8.5 **Description** The issue is related to the SCTP implementation in the Linux kernel, specifically the `sctp sf do 5 2 4 dupcook` function. It does not properly handle associations when processing a duplicate COOKIE ECHO chunk, allowing remote attackers to cause a denial of service, potentially leading to a system crash, via crafted SCTP traffic. **Recommendations** For Linux kernel versions prior to 3.8.5, update to version 3.8.5 or later to resolve the issue.