cbcvebase.
CVE-2011-3188
published 2012-05-24

CVE-2011-3188: The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification…

critical9.1CVSS 3.1
AVNACLPRNUINSUCNIHAH
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
f5arx6.0.0 – 6.4.0
f5big-ip_access_policy_manager10.1.0 – 10.2.4
f5big-ip_access_policy_manager11.0.0 – 11.1.0
f5big-ip_analytics11.0.0 – 11.1.0
f5big-ip_application_security_manager10.0.0 – 10.2.4
f5big-ip_application_security_manager11.0.0 – 11.1.0
f5big-ip_edge_gateway10.1.0 – 10.2.4
f5big-ip_edge_gateway11.0.0 – 11.1.0
f5big-ip_global_traffic_manager10.0.0 – 10.2.4
f5big-ip_global_traffic_manager11.0.0 – 11.1.0
f5big-ip_link_controller10.0.0 – 10.2.4
f5big-ip_link_controller11.0.0 – 11.1.0
f5big-ip_local_traffic_manager10.0.0 – 10.2.4
f5big-ip_local_traffic_manager11.0.0 – 11.1.0
f5big-ip_protocol_security_module10.0.0 – 10.2.4
f5big-ip_protocol_security_module11.0.0 – 11.1.0
f5big-ip_wan_optimization_manager10.0.0 – 10.2.4
f5big-ip_wan_optimization_manager11.0.0 – 11.1.0
f5big-ip_webaccelerator10.0.0 – 10.2.4
f5big-ip_webaccelerator11.0.0 – 11.1.0
f5enterprise_manager
f5enterprise_manager2.1.0 – 2.3.0
f5firepass
f5firepass6.0.0 – 6.1.0
linuxlinux_kernel< 3.13.1