cbcvebase.
CVE-2014-0131
published 2014-03-24

CVE-2014-0131: Use-after-free vulnerability in the skb_segment function in net/core/skbuff.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive…

PriorityP411low2.9CVSS 2.0
AVAACMAuNCPINAN
EPSS
0.68%
48.5th percentile
Use-after-free vulnerability in the skb_segment function in net/core/skbuff.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive information from kernel memory by leveraging the absence of a certain orphaning operation.

Affected

8 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 3.13.6-1 (bookworm)linux 3.13.6-1 (bookworm)
linuxlinux_kernel>= 0 < 3.13.6-13.13.6-1
linuxlinux_kernel>= 0 < 3.13.6-13.13.6-1
linuxlinux_kernel>= 0 < 3.13.6-13.13.6-1
linuxlinux_kernel>= 0 < 3.13.6-13.13.6-1
linuxlinux_kernel3.0 – 3.13.6
opensuseevergreen
suselinux_enterprise_server

CVSS provenance

nvdv2.02.9LOWAV:A/AC:M/Au:N/C:P/I:N/A:N
osv2.9LOW
vendor_debian2.9LOW
vendor_redhat2.9LOW
vendor_ubuntu2.9LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.