CVE-2011-1093

Advisory lineage Upstream: 0 Downstream: 4
Modified
Published: 18 Jul 2011, 22:00
Last modified:06 Aug 2024, 22:14

Vulnerability Summary

Overall Risk (default)
medium
31/100
CVSS Score
7.8 HIGH
v2.0 (nvd)
EPSS Score
1.22% LOW
1% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

18 Jul 2011, 22:00
Published
Vulnerability first disclosed
06 Aug 2024, 22:14
Last Modified
Vulnerability information updated

Description

The dccp_rcv_state_process function in net/dccp/input.c in the Datagram Congestion Control Protocol (DCCP) implementation in the Linux kernel before 2.6.38 does not properly handle packets for a CLOSED endpoint, which allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by sending a DCCP-Close packet followed by a DCCP-Reset packet.

CVSS Metrics

  • v2.0HIGHScore: 7.8AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS Trends

Current EPSS score: 1.22% Percentile: 79%

Techniques & Countermeasures

  • CWE-476NULL Pointer Dereference

    The product dereferences a pointer that it expects to be valid but is NULL.

Affected Systems

  • linuxlinux_kernel

    < 2.6.38

  • redhatenterprise_linux_aus

    5.6

  • redhatenterprise_linux_desktop

    5.0

  • redhatenterprise_linux_eus

    5.6

  • redhatenterprise_linux_server

    5.0

  • redhatenterprise_linux_workstation

    5.0

References (8)