CyberSec.Space Logo
返回 CVE 浏览器

CVE-2014-2523

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1610%
EPSS Percentile39.16th
Published2014年3月24日
Last Modified2026年5月6日

Vulnerability Description

net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a DCCP packet that triggers a call to the (1) dccp_new, (2) dccp_packet, or (3) dccp_error function.

Affected Platforms (CPE)

💻
Linux

Linux Kernel

< 3.2.57
💻
Linux

Linux Kernel

>= 3.3 and < 3.4.86
💻
Linux

Linux Kernel

>= 3.5 and < 3.10.36
💻
Linux

Linux Kernel

>= 3.11 and < 3.12.17
💻
Linux

Linux Kernel

>= 3.13.0 and < 3.13.9
💻
Canonical

Ubuntu Linux

= 10.04

References & Advisories

相关漏洞威胁