CVE-2014-4667
The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.
- Linux Linux Kernel
- < 3.15.2
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 5.9% (93th percentile)
- NVD status
- Modified
- Published
- 2014-07-03
CVE-2014-4667 at NVD
1 known exploit for CVE-2014-4667
Proof-of-concept code and exploit modules indexed by Sploitus