PoC Index

CVE-2010-1173

HIGH 7.1EPSS 21.2%

The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attackers to cause a denial of service (system crash) via an SCTPChunkInit packet containing multiple invalid parameters that require a large amount of error data.

CVSS v2.0
7.1 HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
EPSS
21.24% chance of exploitation in the next 30 days, 97th percentile
Published
2010-05-07
Updated
2024-08-07

ExploitDB entries (1)

References

Related