SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to contain an invalid value that is later used to dereference a pointer.
2006-06-30T21:05:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | 2.6.16 | Yes |
Operating System | linux | linux_kernel | 2.6.16.1 | Yes |
Operating System | linux | linux_kernel | 2.6.16.2 | Yes |
Operating System | linux | linux_kernel | 2.6.16.10 | Yes |
Operating System | linux | linux_kernel | 2.6.16.11 | Yes |
Operating System | linux | linux_kernel | 2.6.16.12 | Yes |
Operating System | linux | linux_kernel | 2.6.16.13 | Yes |
Operating System | linux | linux_kernel | 2.6.16.14 | Yes |
Operating System | linux | linux_kernel | 2.6.16.15 | Yes |
Operating System | linux | linux_kernel | 2.6.16.16 | Yes |
Operating System | linux | linux_kernel | 2.6.16.17 | Yes |
Operating System | linux | linux_kernel | 2.6.16.18 | Yes |
Operating System | linux | linux_kernel | 2.6.16.19 | Yes |
Operating System | linux | linux_kernel | 2.6.16.20 | Yes |
Operating System | linux | linux_kernel | 2.6.16.21 | Yes |
Operating System | linux | linux_kernel | 2.6.16.22 | Yes |
Operating System | linux | linux_kernel | 2.6.17 | Yes |
Operating System | linux | linux_kernel | 2.6.17.1 | Yes |
Operating System | linux | linux_kernel | 2.6.17.2 | Yes |