CVE-2013-7470 REJECTED

cipso_v4_validate in include/net/cipso_ipv4.h in the Linux kernel before 3.11.7, when CONFIG_NETLABEL is disabled, allows attackers to cause a denial of service (infinite loop and crash), as demonstrated by icmpsic, a different vulnerability than CVE-2013-0310.

EPSS 1.20% · 78.8th percentile

Risk Scores

EPSS Score
1.20%
78.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-snapdragon0
Ubuntu:16.04:LTSlinux-kvm0
Ubuntu:16.04:LTSlinux0
Ubuntu:18.04:LTSlinux-gcp-edge0
Ubuntu:16.04:LTSlinux-aws0
Ubuntu:16.04:LTSlinux-azure0
Ubuntu:16.04:LTSlinux-hwe0
Ubuntu:18.04:LTSlinux-raspi20
Ubuntu:18.04:LTSlinux-aws0
Ubuntu:16.04:LTSlinux-gcp0
Ubuntu:18.04:LTSlinux-hwe-edge0
Ubuntu:18.04:LTSlinux-snapdragon0
Ubuntu:18.04:LTSlinux-gcp0
Ubuntu:18.04:LTSlinux-oem0
Ubuntu:18.04:LTSlinux-kvm0
Ubuntu:18.04:LTSlinux-oracle0
Ubuntu:16.04:LTSlinux-aws-hwe0
Ubuntu:18.04:LTSlinux-azure0
Ubuntu:18.04:LTSlinux-hwe0
Ubuntu:18.04:LTSlinux0

…and 2 more

Timeline

References

Open in Interactive Console →