VULNERABILITY INTELLIGENCE

CVE-2011-4348

CVSS score7.1 HIGH
EPSS probability2.18%
CISA KEVNot currently listed
Published2013-06-08
Last modified2026-06-16

Description

Race condition in the sctp_rcv function in net/sctp/input.c in the Linux kernel before 2.6.29 allows remote attackers to cause a denial of service (system hang) via SCTP packets. NOTE: in some environments, this issue exists because of an incomplete fix for CVE-2011-2482.