CVE-2015-1465
published 2015-04-05CVE-2015-1465: The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting…
PriorityP339high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
6.47%
93.0th percentile
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 3.16.7-ckt7-1 (bookworm) | linux 3.16.7-ckt7-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | >= 0 < 3.16.7-ckt7-1 | 3.16.7-ckt7-1 |
| linux | linux_kernel | >= 0 < 3.16.7-ckt7-1 | 3.16.7-ckt7-1 |
| linux | linux_kernel | >= 0 < 3.16.7-ckt7-1 | 3.16.7-ckt7-1 |
| linux | linux_kernel | >= 0 < 3.16.7-ckt7-1 | 3.16.7-ckt7-1 |
| linux | linux_kernel | >= 0 < 3.13.0-49.81 | 3.13.0-49.81 |
| linux | linux_kernel | >= 3.10.50 < 3.10.70 | 3.10.70 |
| linux | linux_kernel | >= 3.12.26 < 3.12.38 | 3.12.38 |
| linux | linux_kernel | >= 3.14.14 < 3.14.34 | 3.14.34 |
| linux | linux_kernel | >= 3.15.7 < 3.16.35 | 3.16.35 |
| linux | linux_kernel | >= 3.17 < 3.18.8 | 3.18.8 |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
osv10.0CRITICAL
vendor_ubuntu10.0CRITICAL
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wf34-7h5v-335r: The IPv4 implementation in the Linux kernel before 3
ghsa_unreviewed·2022-05-17
CVE-2015-1465 [HIGH] GHSA-wf34-7h5v-335r: The IPv4 implementation in the Linux kernel before 3
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
OSV
linux vulnerabilities
osv·2015-04-08·CVSS 10.0
CVE-2015-1421 [CRITICAL] linux vulnerabilities
linux vulnerabilities
Sun Baoliang discovered a use after free flaw in the Linux kernel's SCTP
(Stream Control Transmission Protocol) subsystem during INIT collisions. A
remote attacker could exploit this flaw to cause a denial of service
(system crash) or potentially escalate their privileges on the system.
(CVE-2015-1421)
Marcelo Leitner discovered a flaw in the Linux kernel's routing of packets
to too many different dsts/too fast. A remote attacker on the same subnet can exploit this
flaw to cause a denial of service (system crash). (CVE-2015-1465)
An integer overflow was discovered in the stack randomization feature of
the Linux kernel on 64 bit platforms. A local attacker could exploit this
flaw to bypass the Address Space Layout Randomization (ASLR) protection
mechanism. (CVE-2015
OSV
CVE-2015-1465: The IPv4 implementation in the Linux kernel before 3
osv·2015-04-05·CVSS 7.8
CVE-2015-1465 [HIGH] CVE-2015-1465: The IPv4 implementation in the Linux kernel before 3
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
OSV
linux-lts-utopic vulnerabilities
osv·2015-03-24·CVSS 2.1
CVE-2013-7421 [LOW] linux-lts-utopic vulnerabilities
linux-lts-utopic vulnerabilities
A flaw was discovered in the automatic loading of modules in the crypto
subsystem of the Linux kernel. A local user could exploit this flaw to load
installed kernel modules, increasing the attack surface and potentially
using this to gain administrative privileges. (CVE-2013-7421)
A flaw was discovered in the crypto subsystem when screening module names
for automatic module loading if the name contained a valid crypto module
name, eg. vfat(aes). A local user could exploit this flaw to load installed
kernel modules, increasing the attack surface and potentially using this to
gain administrative privileges. (CVE-2014-9644)
Sun Baoliang discovered a use after free flaw in the Linux kernel's SCTP
(Stream Control Transmission Protocol) subsystem during INIT c
Android
CVE-2015-1465: Android Security Bulletin 2016-09-01
CVE: CVE-2015-1465
Severity: HIGH
References: A-29506807
Upstream
kernel
vendor_android·2016-09-01·CVSS 7.8
CVE-2015-1465 [HIGH] CVE-2015-1465: Android Security Bulletin 2016-09-01
CVE: CVE-2015-1465
Severity: HIGH
References: A-29506807
Upstream
kernel
Android Security Bulletin 2016-09-01
CVE: CVE-2015-1465
Severity: HIGH
References: A-29506807
Upstream
kernel
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-04-08·CVSS 10.0
CVE-2015-1421 [CRITICAL] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sun Baoliang discovered a use after free flaw in the Linux kernel's SCTP
(Stream Control Transmission Protocol) subsystem during INIT collisions. A
remote attacker could exploit this flaw to cause a denial of service
(system crash) or potentially escalate their privileges on the system.
(CVE-2015-1421)
Marcelo Leitner discovered a flaw in the Linux kernel's routing of packets
to too many different dsts/too fast. A remote attacker on the same subnet can exploit this
flaw to cause a denial of service (system crash). (CVE-2015-1465)
An integer overflow was discovered in the stack randomization feature of
the Linux kernel on 64 bit platforms. A local attacker could exploit this
flaw to bypass the
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2015-04-08·CVSS 10.0
CVE-2015-1421 [CRITICAL] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sun Baoliang discovered a use after free flaw in the Linux kernel's SCTP
(Stream Control Transmission Protocol) subsystem during INIT collisions. A
remote attacker could exploit this flaw to cause a denial of service
(system crash) or potentially escalate their privileges on the system.
(CVE-2015-1421)
Marcelo Leitner discovered a flaw in the Linux kernel's routing of packets
to too many different dsts/too fast. A remote attacker on the same subnet can exploit this
flaw to cause a denial of service (system crash). (CVE-2015-1465)
An integer overflow was discovered in the stack randomization feature of
the Linux kernel on 64 bit platforms. A local attacker could exploit this
flaw
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-03-24·CVSS 2.1
CVE-2013-7421 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the automatic loading of modules in the crypto
subsystem of the Linux kernel. A local user could exploit this flaw to load
installed kernel modules, increasing the attack surface and potentially
using this to gain administrative privileges. (CVE-2013-7421)
A flaw was discovered in the crypto subsystem when screening module names
for automatic module loading if the name contained a valid crypto module
name, eg. vfat(aes). A local user could exploit this flaw to load installed
kernel modules, increasing the attack surface and potentially using this to
gain administrative privileges. (CVE-2014-9644)
Sun Baoliang discovered a use after free flaw in the Linux kernel's SCTP
Ubuntu
Linux kernel (Utopic HWE) vulnerabilities
vendor_ubuntu·2015-03-24·CVSS 2.1
CVE-2013-7421 [LOW] Linux kernel (Utopic HWE) vulnerabilities
Title: Linux kernel (Utopic HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the automatic loading of modules in the crypto
subsystem of the Linux kernel. A local user could exploit this flaw to load
installed kernel modules, increasing the attack surface and potentially
using this to gain administrative privileges. (CVE-2013-7421)
A flaw was discovered in the crypto subsystem when screening module names
for automatic module loading if the name contained a valid crypto module
name, eg. vfat(aes). A local user could exploit this flaw to load installed
kernel modules, increasing the attack surface and potentially using this to
gain administrative privileges. (CVE-2014-9644)
Sun Baoliang discovered a use after free flaw in the Linux
Red Hat
kernel: net: DoS due to routing packets to too many different dsts/too fast
vendor_redhat·2015-01-23·CVSS 7.8
CVE-2015-1465 [HIGH] CWE-400 kernel: net: DoS due to routing packets to too many different dsts/too fast
kernel: net: DoS due to routing packets to too many different dsts/too fast
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
Statement: This issue does not affect the Linux kernels as shipped with Red Hat Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2.
Package: kernel (Red Hat Enterprise Linux 4) - Not affected
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterpr
Debian
CVE-2015-1465: linux - The IPv4 implementation in the Linux kernel before 3.18.8 does not properly cons...
vendor_debian·2015·CVSS 7.8
CVE-2015-1465 [HIGH] CVE-2015-1465: linux - The IPv4 implementation in the Linux kernel before 3.18.8 does not properly cons...
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
Scope: local
bookworm: resolved (fixed in 3.16.7-ckt7-1)
bullseye: resolved (fixed in 3.16.7-ckt7-1)
forky: resolved (fixed in 3.16.7-ckt7-1)
sid: resolved (fixed in 3.16.7-ckt7-1)
trixie: resolved (fixed in 3.16.7-ckt7-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-5229 glibc: calloc may return non-zero memory
bugzilla·2015-08-24·CVSS 7.5
CVE-2015-5229 [HIGH] CVE-2015-5229 glibc: calloc may return non-zero memory
CVE-2015-5229 glibc: calloc may return non-zero memory
It was discovered that the calloc implementation in glibc, as shipped in the Red Hat Enterprise Linux 6.7 GA and 7.2 GA version, could return memory areas which contain non-zero bytes. This could lead to application misbehavior such as hangs or crashes.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHBA-2015:1465 https://rhn.redhat.com/errata/RHBA-2015-1465.html
---
Fixed glibc packages for Red Hat Enterprise Linux 6.7 were available at GA time, but are not included in the installation media.
---
This issue was found to also affect Red Hat Enterprise Linux 7.2. This issue does not affect Red Hat Enterprise Linux 7.0 or 7.1.
---
Acknowledgements:
Red Hat would like to tha
Bugzilla
CVE-2015-1465 kernel: net: DoS due to routing packets to too many different dsts/too fast
bugzilla·2015-01-19·CVSS 7.8
CVE-2015-1465 [HIGH] CVE-2015-1465 kernel: net: DoS due to routing packets to too many different dsts/too fast
CVE-2015-1465 kernel: net: DoS due to routing packets to too many different dsts/too fast
It was found that routing packets to too many different dsts/too fast can lead
to a excessive resource consumption.
A remote attacker can use this flaw to crash the system.
Introduced by:
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=f88649721268999bdff09777847080a52004f691
Acknowledgements:
This issue was found by Marcelo Ricardo Leitner of Red Hat.
Discussion:
Upstream patch:
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=df4d92549f23e1c037e83323aff58a21b3de7fe0
---
Statement:
This issue does not affect the Linux kernels as shipped with Red Hat Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2.
---
Created kernel tracking bugs f
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=df4d92549f23e1c037e83323aff58a21b3de7fe0http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00009.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.8http://www.openwall.com/lists/oss-security/2015/02/03/13http://www.securityfocus.com/bid/72435http://www.securitytracker.com/id/1036763http://www.ubuntu.com/usn/USN-2545-1http://www.ubuntu.com/usn/USN-2546-1http://www.ubuntu.com/usn/USN-2562-1http://www.ubuntu.com/usn/USN-2563-1https://bugzilla.redhat.com/show_bug.cgi?id=1183744https://github.com/torvalds/linux/commit/df4d92549f23e1c037e83323aff58a21b3de7fe0http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=df4d92549f23e1c037e83323aff58a21b3de7fe0http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00009.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.8http://www.openwall.com/lists/oss-security/2015/02/03/13http://www.securityfocus.com/bid/72435http://www.securitytracker.com/id/1036763http://www.ubuntu.com/usn/USN-2545-1http://www.ubuntu.com/usn/USN-2546-1http://www.ubuntu.com/usn/USN-2562-1http://www.ubuntu.com/usn/USN-2563-1https://bugzilla.redhat.com/show_bug.cgi?id=1183744https://github.com/torvalds/linux/commit/df4d92549f23e1c037e83323aff58a21b3de7fe0
2015-04-05
Published