Lucene search

K
f5F5F5:K17309
HistorySep 24, 2015 - 12:00 a.m.

K17309 : Linux kernel vulnerability CVE-2015-5366

2015-09-2400:00:00
my.f5.com
29

AI Score

8.6

Confidence

High

EPSS

0.399

Percentile

97.3%

Security Advisory Description

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364. (CVE-2015-5366)
Impact
An unprivileged user can use this flaw to cause denial-of-service (DoS) attacks on a remote system, limited only on the affected application, by way of specially crafted User Datagram Protocol (UDP) packets.