Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24893
HistoryApr 10, 2020 - 1:08 a.m.

Denial Of Service (DoS)

2020-04-1001:08:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.013 Low

EPSS

Percentile

85.8%

kernel is vulnerable to denial of service (DoS). The vulnerability exists as the fix for CVE-2011-2482 provided by RHSA-2011:1212 introduced a regression: on systems that do not have Security-Enhanced Linux (SELinux) in Enforcing mode, a socket lock race could occur between sctp_rcv() and sctp_accept(). A remote attacker could use this flaw to cause a denial of service. By default, SELinux runs in Enforcing mode on Red Hat Enterprise Linux 5.