High severity7.5NVD Advisory· Published May 9, 2006· Updated Apr 16, 2026
CVE-2006-2275
CVE-2006-2275
Description
Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver application that cannot process the messages quickly enough, which leads to "spillover of the receive buffer."
Affected products
4- cpe:2.3:a:lksctp:stream_control_transmission_protocol:*:*:*:*:*:*:*:*Range: <2.6.17
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- support.avaya.com/elmodocs2/security/ASA-2006-200.htmnvdThird Party Advisory
- www.securityfocus.com/bid/17955nvdBroken LinkThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/usn-302-1nvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/26433nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/20716nvdBroken Link
- secunia.com/advisories/21465nvdBroken Link
- secunia.com/advisories/22417nvdBroken Link
- www.redhat.com/support/errata/RHSA-2006-0575.htmlnvdBroken Link
- www.trustix.org/errata/2006/0026nvdBroken Link
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11295nvdBroken Link
News mentions
0No linked articles in our index yet.