Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

  • Published: Mar 11, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-0101
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.8
  • AV:N/AC:L/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
linux / linux_kernel 2.6.24 3.2.56
linux / linux_kernel 3.3 3.4.84
linux / linux_kernel 3.5 3.10.34
linux / linux_kernel 3.11 3.12.15
linux / linux_kernel 3.13 3.13.7
redhat / enterprise_linux_server_aus 6.5 6.5.x
redhat / enterprise_linux_server_tus 6.5 6.5.x
redhat / enterprise_linux_server_aus 6.4 6.4.x
redhat / enterprise_linux_desktop 6.0 6.0.x
redhat / enterprise_linux_server 6.0 6.0.x
redhat / enterprise_linux_workstation 6.0 6.0.x
redhat / enterprise_linux_eus 6.3 6.3.x
redhat / enterprise_linux_eus 6.5 6.5.x
redhat / enterprise_linux_eus 6.4 6.4.x
canonical / ubuntu_linux 10.04 10.04.x
f5 / big-iq_centralized_management 4.6.0 4.6.0.x
f5 / big-iq_adc 4.5.0 4.5.0.x
f5 / big-iq_security 4.0.0 4.5.0.x
f5 / big-iq_device 4.2.0 4.5.0.x
f5 / big-iq_cloud 4.0.0 4.5.0.x
f5 / big-ip_edge_gateway 11.1.0 11.3.0.x
f5 / big-ip_protocol_security_module 11.1.0 11.4.1.x
f5 / big-ip_wan_optimization_manager 11.1.0 11.3.0.x
f5 / big-ip_webaccelerator 11.1.0 11.3.0.x
f5 / big-ip_application_acceleration_manager 11.4.0 11.5.3.x
f5 / big-ip_advanced_firewall_manager 11.3.0 11.5.3.x
f5 / big-ip_analytics 11.1.0 11.5.3.x
f5 / big-ip_policy_enforcement_manager 11.3.0 11.5.3.x
f5 / big-ip_enterprise_manager 2.1.0 2.3.0.x
f5 / big-ip_enterprise_manager 3.0.0 3.1.1.x
f5 / big-ip_access_policy_manager 11.1.0 11.5.3.x
f5 / big-ip_global_traffic_manager 11.1.0 11.5.3.x
f5 / big-ip_application_security_manager 11.1.0 11.5.3.x
f5 / big-ip_link_controller 11.1.0 11.5.3.x
f5 / big-ip_local_traffic_manager 11.1.0 11.5.3.x