CVE-2006-3745
Vulnerability Summary
Timeline
Description
Unspecified vulnerability in the sctp_make_abort_user function in the SCTP implementation in Linux 2.6.x before 2.6.17.10 and 2.4.23 up to 2.4.33 allows local users to cause a denial of service (panic) and possibly gain root privileges via unknown attack vectors.
CVSS Metrics
- v2.0•HIGH•Score: 7.2AV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS Trends
Current EPSS score: 0.09%• Percentile: 26%
Affected Systems
- linux•linux_kernel
≤ 2.6.17.9 | 2.4.23 | 2.4.24 | 2.4.25 | 2.4.26 | 2.4.27 | 2.4.28 | 2.4.29 | 2.4.30 | 2.4.31 | 2.4.32 | 2.4.33 | 2.6.0 | 2.6.1 | 2.6.10 | 2.6.11 | 2.6.11.1 | 2.6.11.2 | 2.6.11.3 | 2.6.11.4 | 2.6.11.5 | 2.6.11.6 | 2.6.11.7 | 2.6.11.8 | 2.6.11.9 | 2.6.11.10 | 2.6.11.11 | 2.6.11.12 | 2.6.12 | 2.6.12.1 | 2.6.12.2 | 2.6.12.3 | 2.6.12.4 | 2.6.12.5 | 2.6.12.6 | 2.6.13 | 2.6.13.1 | 2.6.13.2 | 2.6.13.3 | 2.6.13.4 | 2.6.13.5 | 2.6.14 | 2.6.14.1 | 2.6.14.2 | 2.6.14.3 | 2.6.14.4 | 2.6.14.5 | 2.6.14.6 | 2.6.14.7 | 2.6.15 | 2.6.15.1 | 2.6.15.2 | 2.6.15.3 | 2.6.15.4 | 2.6.15.5 | 2.6.15.6 | 2.6.15.7 | 2.6.16 | 2.6.16.1 | 2.6.16.2 | 2.6.16.3 | 2.6.16.4 | 2.6.16.5 | 2.6.16.6 | 2.6.16.7 | 2.6.16.8 | 2.6.16.9 | 2.6.16.10 | 2.6.16.11 | 2.6.16.12 | 2.6.16.13 | 2.6.16.14 | 2.6.16.15 | 2.6.16.16 | 2.6.16.17 | 2.6.16.18 | 2.6.16.19 | 2.6.16.20 | 2.6.16.21 | 2.6.16.22 | 2.6.16.23 | 2.6.16.24 | 2.6.16.25 | 2.6.16.26 | 2.6.16.27 | 2.6.16.28 | 2.6.16.29 | 2.6.16.30 | 2.6.16.31 | 2.6.17 | 2.6.17.1 | 2.6.17.2 | 2.6.17.3 | 2.6.17.4 | 2.6.17.5 | 2.6.17.6 | 2.6.17.7 | 2.6.17.8
References (30)
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28530
- http://secunia.com/advisories/21934
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:025
- http://secunia.com/advisories/21847
- http://www.redhat.com/support/errata/RHSA-2006-0617.html
- http://secunia.com/advisories/21695
- http://secunia.com/advisories/21605
- http://www.debian.org/security/2006/dsa-1183
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:150
- http://www.securityfocus.com/bid/19666
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:151
- http://secunia.com/advisories/22082
- http://secunia.com/advisories/21614
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10706
- http://secunia.com/advisories/22174
- http://www.securityfocus.com/archive/1/444066/100/0/threaded
- http://archives.neohapsis.com/archives/fulldisclosure/2006-08/0600.html
- http://secunia.com/advisories/21576
- http://secunia.com/advisories/22148
- http://www.ubuntu.com/usn/usn-346-1
- http://www.novell.com/linux/security/advisories/2006_21_sr.html
- http://www.novell.com/linux/security/advisories/2006_22_sr.html
- http://support.avaya.com/elmodocs2/security/ASA-2006-203.htm
- https://issues.rpath.com/browse/RPL-611
- http://www.vupen.com/english/advisories/2006/3358
- http://www.securityfocus.com/archive/1/444887/100/0/threaded
- http://secunia.com/advisories/22093
- http://www.debian.org/security/2006/dsa-1184
- http://kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.33.2
- http://www.novell.com/linux/security/advisories/2006_57_kernel.html