CVE-2014-5077
The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (5.79%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT and INIT ACK chunks to establish an earlier association between these endpoints in the opposite direction.
- CVSS 2.0
- 7.1 HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
- EPSS
- 5.79% probability · 93th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- linux/linux kernel · suse/linux enterprise desktop · suse/linux enterprise real time extension · suse/linux enterprise server · redhat/enterprise linux eus · redhat/enterprise linux server aus · redhat/enterprise linux server tus · canonical/ubuntu linux
- Source
- secalert@redhat.com
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=1be9a950c646c9092fb3618197f7b6bfb50e82aaVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1083.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1668.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1763.htmlThird Party Advisory
- http://secunia.com/advisories/59777Third Party Advisory
- http://secunia.com/advisories/60430Third Party Advisory
- http://secunia.com/advisories/60545Third Party Advisory
- http://secunia.com/advisories/60564Third Party Advisory
- http://secunia.com/advisories/60744Third Party Advisory
- http://secunia.com/advisories/62563Third Party Advisory
- http://www.openwall.com/lists/oss-security/2014/07/26/1Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/68881Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1030681Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2334-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2335-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2358-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2359-1Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1122982Issue Tracking, Patch, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95134Third Party Advisory, VDB Entry
- https://github.com/torvalds/linux/commit/1be9a950c646c9092fb3618197f7b6bfb50e82aaPatch, Third Party Advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=1be9a950c646c9092fb3618197f7b6bfb50e82aaVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1083.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1668.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1763.htmlThird Party Advisory
- http://secunia.com/advisories/59777Third Party Advisory
- http://secunia.com/advisories/60430Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.