Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-4667
HistoryJul 03, 2014 - 4:22 a.m.

Code injection

2014-07-0304:22:00
PRIOn knowledge base
www.prio-n.com
8

6.7 Medium

AI Score

Confidence

Low

0.049 Low

EPSS

Percentile

92.8%

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

References