Description
The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the processing of a duplicate COOKIE ECHO chunk, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted SCTP traffic.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2766-1 | linux-2.6 security update |
EUVD |
EUVD-2013-2161 | The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the processing of a duplicate COOKIE ECHO chunk, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted SCTP traffic. |
Ubuntu USN |
USN-1809-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1811-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-1812-1 | Linux kernel (Quantal HWE) vulnerabilities |
Ubuntu USN |
USN-1813-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1814-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-1939-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1940-1 | Linux kernel (EC2) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T15:27:41.097Z
Reserved: 2013-02-19T00:00:00.000Z
Link: CVE-2013-2206
No data.
Status : Deferred
Published: 2013-07-04T21:55:01.027
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-2206
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN