Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12299
HistoryJan 15, 2019 - 9:15 a.m.

Denial Of Service (DoS)

2019-01-1509:15:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0

Percentile

0.4%

The kernel-rt package is vulnerable to denial of service(DoS). The attack exists because of a use-after-free flaw in the way the Linux kernel’s Datagram Congestion Control Protocol (DCCP) implementation freed SKB (socket buffer) resources for a DCCP_PKT_REQUEST packet when the IPV6_RECVPKTINFO option is set on the socket. allowing a local privileged user to trigger the attack.

References