CVE-2010-1173
HIGH 7.1EPSS 21.2%
The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attackers to cause a denial of service (system crash) via an SCTPChunkInit packet containing multiple invalid parameters that require a large amount of error data.
- CVSS v2.0
- 7.1 HIGH
AV:N/AC:M/Au:N/C:N/I:N/A:C - EPSS
- 21.24% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2010-05-07
- Updated
- 2024-08-07