udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 3.3 | 3.4.113 |
| linux / linux_kernel | 3.15 | 3.16.35 |
| linux / linux_kernel | 3.2 | 3.2.76 |
| linux / linux_kernel | 3.5 | 3.10.103 |
| linux / linux_kernel | 3.11 | 3.12.53 |
| linux / linux_kernel | 3.13 | 3.14.77 |
| linux / linux_kernel | 3.17 | 3.18.45 |
| linux / linux_kernel | 3.19 | 4.1.40 |
| linux / linux_kernel | 4.2 | 4.4.21 |
| google / android | - | 7.1.1.x |