PT-2006-3242 · Linux+1 · Linux Sctp+1

Published

2006-05-09

·

Updated

2024-02-15

·

CVE-2006-2275

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Linux SCTP (lksctp) versions prior to 2.6.17
Description The issue allows remote attackers to cause a denial of service (deadlock) by sending a large number of small messages to a receiver application that cannot process them quickly enough. This leads to a "spillover of the receive buffer."
Recommendations For Linux SCTP (lksctp) versions prior to 2.6.17, update to version 2.6.17 or later to resolve the issue.

Fix

DoS

Improper Locking

Weakness Enumeration

Related Identifiers

CVE-2006-2275
RHSA-2006:0575
RHSA-2006_0575

Affected Products

Linux Sctp
Red Hat