Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3687

The sctp_assoc_lookup_asconf_ack function in net/sctp/associola.c in the SCTP implementation in the Linux kernel through 3.17.2 allows remote attackers to cause a denial of service (panic) via duplicate ASCONF chunks that trigger an incorrect uncork within the side-effect interpreter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.031
EPSS Ranking 86.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 7.8
References
Products affected by CVE-2014-3687


Contact Us

Shodan ® - All rights reserved