ZeroHour

CVE-2016-7039

CVSS 3.1
7.5 high
EPSS
8%p94
Published
()
Modified
Description

The IP stack in the Linux kernel through 4.8.2 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for large crafted packets, as demonstrated by packets that contain only VLAN headers, a related issue to CVE-2016-8666.

Vendors
oraclelinux
Products
linux, vm server, linux kernel
Weakness
CWE-399
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.