Security Advisory

CVE-2013-6432

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-12-09 18:00:00
Last updated 2024-08-06 17:39:01
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly interact with read system calls on ping sockets, which allows local users to cause a denial of service (NULL pointer dereference and system crash) by leveraging unspecified privileges to execute a crafted application.