ZeroHour

CVE-2006-2934

CVSS 2.0
5.0 medium
EPSS
Published
()
Modified
Description

SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to contain an invalid value that is later used to dereference a pointer.

Vendors
linux
Products
linux kernel
Weakness
CWE-399
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P

In the news

No ingested article mentions this CVE yet.