HIGH · 7.8

CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, ...

Vulnerability Description

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
LinuxLinux Kernel>= 2.6.24, < 3.2.56
RedhatEnterprise Linux Desktop6.0
RedhatEnterprise Linux Eus6.3
RedhatEnterprise Linux Server6.0
RedhatEnterprise Linux Server Aus6.4
RedhatEnterprise Linux Server Tus6.5
RedhatEnterprise Linux Workstation6.0
CanonicalUbuntu Linux10.04
F5Big-Ip Access Policy Manager>= 11.1.0, <= 11.5.3
F5Big-Ip Advanced Firewall Manager>= 11.3.0, <= 11.5.3
F5Big-Ip Analytics>= 11.1.0, <= 11.5.3
F5Big-Ip Application Acceleration Manager>= 11.4.0, <= 11.5.3
F5Big-Ip Application Security Manager>= 11.1.0, <= 11.5.3
F5Big-Ip Edge Gateway>= 11.1.0, <= 11.3.0
F5Big-Ip Enterprise Manager>= 2.1.0, <= 2.3.0
F5Big-Ip Global Traffic Manager>= 11.1.0, <= 11.5.3
F5Big-Ip Link Controller>= 11.1.0, <= 11.5.3
F5Big-Ip Local Traffic Manager>= 11.1.0, <= 11.5.3
F5Big-Ip Policy Enforcement Manager>= 11.3.0, <= 11.5.3
F5Big-Ip Protocol Security Module>= 11.1.0, <= 11.4.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-0101?

CVE-2014-0101 is a vulnerability with a CVSS score of 7.8 (HIGH). The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, ...

How severe is CVE-2014-0101?

CVE-2014-0101 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-0101?

Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Redhat Enterprise Linux Desktop, Redhat Enterprise Linux Eus, Redhat Enterprise Linux Server, Redhat Enterprise Linux Server Aus.