cbcvebase.
CVE-2013-1827
published 2013-03-22

CVE-2013-1827: net/dccp/ccid.h in the Linux kernel before 3.5.4 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash)…

PriorityP419medium6.2CVSS 2.0
AVLACHAuNCCICAC
EPSS
0.48%
38.9th percentile
net/dccp/ccid.h in the Linux kernel before 3.5.4 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) by leveraging the CAP_NET_ADMIN capability for a certain (1) sender or (2) receiver getsockopt call.

Affected

8 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 3.2.29-1 (bookworm)linux 3.2.29-1 (bookworm)
linuxlinux_kernel<= 3.5.3
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 3.2.29-13.2.29-1
linuxlinux_kernel>= 0 < 3.2.29-13.2.29-1
linuxlinux_kernel>= 0 < 3.2.29-13.2.29-1
linuxlinux_kernel>= 0 < 3.2.29-13.2.29-1

CVSS provenance

nvdv2.06.2MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
osv6.2MEDIUM
vendor_ubuntu6.9MEDIUM
vendor_debian6.2MEDIUM
vendor_redhat6.2MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.