cbcvebase.
CVE-2015-8787
published 2016-02-08

CVE-2015-8787: The nf_nat_redirect_ipv4 function in net/netfilter/nf_nat_redirect.c in the Linux kernel before 4.4 allows remote attackers to cause a denial of service (NULL…

PriorityP344critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
9.23%
94.8th percentile
The nf_nat_redirect_ipv4 function in net/netfilter/nf_nat_redirect.c in the Linux kernel before 4.4 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by sending certain IPv4 packets to an incompletely configured interface, a related issue to CVE-2003-1604.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 4.3.5-1 (bookworm)linux 4.3.5-1 (bookworm)
debianlinux
linuxlinux_kernel<= 2.5.75
linuxlinux_kernel>= 0 < 4.3.5-14.3.5-1
linuxlinux_kernel>= 0 < 4.3.5-14.3.5-1
linuxlinux_kernel>= 0 < 4.3.5-14.3.5-1
linuxlinux_kernel>= 0 < 4.3.5-14.3.5-1
linuxlinux_kernel>= 3.19 < 4.1.314.1.31
linuxlinux_kernel>= 4.2 < 4.44.4

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.