A vulnerability was found in the Linux kernel in versions prior to v5.14-rc1. Missing size validations on inbound SCTP packets may allow the kernel to read uninitialized memory.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 5.14 | 5.14.x |
| linux / linux_kernel | - | 5.14 |
| redhat / enterprise_linux | 8.0 | 8.0.x |
| debian / debian_linux | 9.0 | 9.0.x |