Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The SCTP-netfilter code in Linux kernel before 2.6.16.13 allows remote attackers to trigger a denial of service (infinite loop) via unknown vectors that cause an invalid SCTP chunk size to be processed by the for_each_sctp_chunk function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux Kernel SCTP-netfilter 远程拒绝服务漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux Kernel的SCTP-netfilter模块实现上存在漏洞,远程攻击者可能利用此漏洞导致服务器拒绝服务。 SCTP-netfilter的for_each_sctp_chunk()函数存在一个死循环漏洞,远程攻击者可以通过发送特殊的带有无效块大小数据的SCTP报文使模块进入死循环,消耗CPU所有资源导致拒绝服务发生。
CVSS Information
N/A
Vulnerability Type
N/A