CVE-2013-4348

HIGH

Description

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

References

http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00002.html

http://rhn.redhat.com/errata/RHSA-2013-1490.html

http://www.ubuntu.com/usn/USN-2070-1

http://www.ubuntu.com/usn/USN-2075-1

https://bugzilla.redhat.com/show_bug.cgi?id=1007939

https://git.kernel.org/cgit/linux/kernel/git/davem/net.git/commit/?id=6f092343855a71e03b8d209815d8c45bf3a27fcd

Details

Source: MITRE

Published: 2013-11-04

Updated: 2014-03-06

Type: CWE-399

Risk Information

CVSS v2.0

Base Score: 7.1

Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 8.6

Severity: HIGH