Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-7841

The sctp_process_param function in net/sctp/sm_make_chunk.c in the SCTP implementation in the Linux kernel before 3.17.4, when ASCONF is used, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via a malformed INIT chunk.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.183
EPSS Ranking 95.0%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2014-7841


Contact Us

Shodan ® - All rights reserved