Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11673
HistoryJan 15, 2019 - 9:05 a.m.

Denial Of Service (DoS)

2019-01-1509:05:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.002 Low

EPSS

Percentile

61.3%

Linux kernal-rt is vulnerable to denial of service. A buffer overflow flaw was found in the way the Linux kernel’s Intel AES-NI instructions optimized version of the RFC4106 GCM mode decryption functionality handled fragmented packets. A remote attacker can use this flaw to crash, or potentially escalate their privileges on a system over a connection with an active AEC-GCM mode IPSec security association.

References