VYPR
Unrated severityNVD Advisory· Published Jun 8, 2013· Updated Apr 29, 2026

CVE-2011-4348

CVE-2011-4348

Description

Race condition in the sctp_rcv function in net/sctp/input.c in the Linux kernel before 2.6.29 allows remote attackers to cause a denial of service (system hang) via SCTP packets. NOTE: in some environments, this issue exists because of an incomplete fix for CVE-2011-2482.

Affected products

11
  • Linux/Kernel11 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 10 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: <=2.6.28.10
    • cpe:2.3:o:linux:linux_kernel:2.6.28:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.1:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.2:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.3:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.4:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.5:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.6:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.7:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.8:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.28.9:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.