VDB
CVE-2006-4535
CVE-2006-4535
PUBLISHED
CVSS 4.900000095367432 MEDIUM
The Linux kernel 2.6.17.10 and 2.6.17.11 and 2.6.18-rc5 allows local users to cause a denial of service (crash) via an SCTP socket with a certain SO_LINGER value, possibly related to the patch for CVE-2006-3745. NOTE: older kernel versions for specific Linux distributions are also affected, due to backporting of the CVE-2006-3745 patch.
EPSS 0.43% · 35.8th percentile
Risk Scores
CVSS 2.0
4.900000095367432
EPSS Score
0.43%
35.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| linux | linux_kernel | 2.6.17.10, 2.6.17.11, 2.6.18 |
| n/a | n/a | n/a |
Timeline
- Sep 19, 2006 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- MDKSA-2007:025 vendor-advisory
- http://www.mail-archive.com/kernel-svn-changes%40lists.alioth.debian.org/msg02314.html url
- DSA-1183 vendor-advisory
- 22292 third-party-advisory
- RHSA-2006:0689 vendor-advisory
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=204460 url
- 22082 third-party-advisory
- 21945 third-party-advisory
- 20087 vdb
- MDKSA-2006:182 vendor-advisory
- kernel-sctp-dos(29011) vdb
- 22382 third-party-advisory
- 21967 third-party-advisory
- USN-347-1 vendor-advisory
- http://support.avaya.com/elmodocs2/security/ASA-2006-249.htm url
- 1016992 vdb
- oval:org.mitre.oval:def:10530 vdb
- 22945 third-party-advisory
- 22093 third-party-advisory
- DSA-1184 vendor-advisory
…and 2 more