CVE-2010-1173 - CERT CVE
ID CVE-2010-1173
Sažetak The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attackers to cause a denial of service (system crash) via an SCTPChunkInit packet containing multiple invalid parameters that require a large amount of error data.
Reference
CVSS
Base: 7.1
Impact: 6.9
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE COMPLETE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:N/A:C
Zadnje važnije ažuriranje 13-02-2023 - 04:17
Objavljeno 07-05-2010 - 18:30