PT-2010-5618 · Debian+1 · Linux+1

Jukka Taimisto

+1

·

Published

1970-01-01

·

Updated

2026-02-10

·

CVE-2010-1173

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions linux-image-2.6.26-2-vserver-686-bigmem linux-headers-2.6.26-2-all-mips linux-headers-2.6.26-2-ixp4xx linux-image-2.6.26-2-vserver-sparc64 linux-headers-2.6.26-2-s390 linux-headers-2.6.26-2-all-s390 linux-headers-2.6.26-2-686-bigmem linux-image-2.6.26-2-parisc linux-image-2.6.26-2-sparc64 linux-headers-2.6.26-2-vserver-powerpc linux-headers-2.6.26-2-mckinley linux-image-2.6.26-2-r4k-ip22 linux-headers-2.6.26-2-xen-686 linux-image-2.6.26-2-parisc64-smp linux-doc-2.6.26 linux-headers-2.6.26-2-r4k-ip22 linux-headers-2.6.26-2-iop32x linux-headers-2.6.26-2-r5k-ip32 linux-image-2.6.26-2-s390-tape linux-image-2.6.26-2-alpha-generic linux-headers-2.6.26-2-vserver-amd64 linux-image-2.6.26-2-vserver-s390x linux-headers-2.6.26-2-all-sparc linux-headers-2.6.26-2-vserver-686-bigmem linux-headers-2.6.26-2-5kc-malta linux-headers-2.6.26-2-sparc64 linux-tree-2.6.26 linux-image-2.6.26-2-amd64 linux-modules-2.6.26-2-xen-686 linux-image-2.6.26-2-vserver-686 linux-image-2.6.26-2-5kc-malta linux-image-2.6.26-2-4kc-malta linux-image-2.6.26-2-alpha-smp linux-headers-2.6.26-2-4kc-malta linux-headers-2.6.26-2-r5k-cobalt linux-headers-2.6.26-2-all-i386 linux-image-2.6.26-2-iop32x linux-headers-2.6.26-2-vserver-s390x linux-headers-2.6.26-2-all-mipsel linux-image-2.6.26-2-openvz-amd64 linux-headers-2.6.26-2-all-arm linux-headers-2.6.26-2-all-alpha linux-headers-2.6.26-2-vserver-686 linux-image-2.6.26-2-vserver-itanium linux-headers-2.6.26-2-common-xen linux-headers-2.6.26-2-all-hppa linux-image-2.6.26-2-footbridge linux-image-2.6.26-2-xen-amd64 linux-modules-2.6.26-2-xen-amd64 linux-headers-2.6.26-2-amd64 linux-image-2.6.26-2-mckinley linux-image-2.6.26-2-versatile linux-headers-2.6.26-2-all-amd64 linux-image-2.6.26-2-itanium linux-headers-2.6.26-2-sparc64-smp linux-image-2.6.26-2-powerpc64 linux-manual-2.6.26 linux-headers-2.6.26-2-xen-amd64 linux-image-2.6.26-2-powerpc-smp linux-image-2.6.26-2-sparc64-smp linux-headers-2.6.26-2-vserver-powerpc64 linux-image-2.6.26-2-r5k-ip32 linux-image-2.6.26-2-s390x linux-image-2.6.26-2-r5k-cobalt linux-headers-2.6.26-2-powerpc-smp linux-headers-2.6.26-2-orion5x linux-headers-2.6.26-2-openvz-amd64 linux-image-2.6.26-2-vserver-powerpc linux-headers-2.6.26-2-686 linux-image-2.6.26-2-686-bigmem linux-image-2.6.26-2-orion5x linux-headers-2.6.26-2-all-powerpc linux-image-2.6.26-2-vserver-powerpc64 linux-patch-debian-2.6.26 linux-image-2.6.26-2-ixp4xx linux-image-2.6.26-2-parisc-smp linux-headers-2.6.26-2-486 linux-image-2.6.26-2-parisc64 linux-headers-2.6.26-2-vserver-sparc64 linux-image-2.6.26-2-powerpc linux-headers-2.6.26-2-all linux-source-2.6.26 linux-headers-2.6.26-2-parisc64-smp linux-image-2.6.26-2-xen-686 linux-image-2.6.26-2-686 linux-headers-2.6.26-2-alpha-legacy linux-headers-2.6.26-2-vserver-itanium linux-headers-2.6.26-2-sb1-bcm91250a linux-headers-2.6.26-2-alpha-smp linux-image-2.6.26-2-sb1a-bcm91480b linux-headers-2.6.26-2-parisc-smp linux-headers-2.6.26-2-all-ia64 linux-image-2.6.26-2-openvz-686 linux-headers-2.6.26-2-footbridge linux-support-2.6.26-2 linux-headers-2.6.26-2-powerpc linux-image-2.6.26-2-alpha-legacy linux-headers-2.6.26-2-s390x linux-headers-2.6.26-2-all-armel linux-headers-2.6.26-2-parisc64 linux-headers-2.6.26-2-sb1a-bcm91480b linux-headers-2.6.26-2-vserver-mckinley linux-libc-dev linux-headers-2.6.26-2-common-vserver linux-image-2.6.26-2-vserver-mckinley linux-headers-2.6.26-2-common-openvz linux-headers-2.6.26-2-common linux-image-2.6.26-2-sb1-bcm91250a linux-image-2.6.26-2-s390
Description The issue is related to multiple vulnerabilities in the Linux kernel, specifically in the Debian GNU/Linux operating system. These vulnerabilities can be exploited remotely, leading to a denial of service and potentially disrupting the availability of protected information. The sctp process unk param function in net/sctp/sm make chunk.c is vulnerable when SCTP is enabled, allowing remote attackers to cause a system crash via an SCTPChunkInit packet containing multiple invalid parameters.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Memory Corruption

RCE

Race Condition

NULL Pointer Dereference

Related Identifiers

BDU:2015-01013
BDU:2015-01014
BDU:2015-01015
BDU:2015-01016
BDU:2015-01017
BDU:2015-01018
BDU:2015-01019
BDU:2015-01020
BDU:2015-01021
BDU:2015-01022
BDU:2015-01023
BDU:2015-01024
BDU:2015-01025
BDU:2015-01026
BDU:2015-01027
BDU:2015-01028
BDU:2015-01029
BDU:2015-01030
BDU:2015-01031
BDU:2015-01032
BDU:2015-01033
BDU:2015-01034
BDU:2015-01035
BDU:2015-01036
BDU:2015-01037
BDU:2015-01038
BDU:2015-01039
BDU:2015-01040
BDU:2015-01041
BDU:2015-01042
BDU:2015-01043
BDU:2015-01044
BDU:2015-01045
BDU:2015-01046
BDU:2015-01047
BDU:2015-01048
BDU:2015-01049
BDU:2015-01050
BDU:2015-01053
BDU:2015-01054
BDU:2015-01055
BDU:2015-01056
BDU:2015-01057
BDU:2015-01058
BDU:2015-01059
BDU:2015-01060
BDU:2015-01061
BDU:2015-01062
BDU:2015-01063
BDU:2015-01064
BDU:2015-01065
BDU:2015-01066
BDU:2015-01067
BDU:2015-01068
BDU:2015-01069
BDU:2015-01070
BDU:2015-01071
BDU:2015-01072
BDU:2015-01073
BDU:2015-01074
BDU:2015-01075
BDU:2015-01076
BDU:2015-01077
BDU:2015-01078
BDU:2015-01079
BDU:2015-01080
BDU:2015-01081
BDU:2015-01082
BDU:2015-01083
BDU:2015-01084
BDU:2015-01085
BDU:2015-01086
BDU:2015-01087
BDU:2015-01088
BDU:2015-01089
BDU:2015-01090
BDU:2015-01091
BDU:2015-01092
BDU:2015-01093
BDU:2015-01094
BDU:2015-01095
BDU:2015-01096
BDU:2015-01097
BDU:2015-01098
BDU:2015-01099
BDU:2015-01100
BDU:2015-01101
BDU:2015-01102
BDU:2015-01103
BDU:2015-01104
BDU:2015-01105
BDU:2015-01106
BDU:2015-01107
BDU:2015-01108
BDU:2015-01109
BDU:2015-01110
BDU:2015-01111
BDU:2015-01112
BDU:2015-01113
BDU:2015-01114
BDU:2015-01115
BDU:2015-01116
BDU:2015-01117
BDU:2015-01118
BDU:2015-01119
BDU:2015-01120
BDU:2015-01121
BDU:2015-01122
BDU:2015-01123
BDU:2015-01124
BDU:2015-01125
BDU:2015-01126
BDU:2015-01127
BDU:2015-01128
BDU:2015-01129
BDU:2015-01130
BDU:2015-01131
CVE-2010-1173
DSA-2053-1
RHSA-2010:0474
RHSA-2010:0504
RHSA-2010:0631
RHSA-2010_0474
RHSA-2010_0504

Affected Products

Linux
Red Hat