cbcvebase.
CVE-2021-3772
published 2022-03-02

CVE-2021-3772: A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the…

medium6.5CVSS 3.1
AVNACHPRNUINSUCNILAH
A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

Affected

34 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianlinux< linux 5.14.16-1 (bookworm)linux 5.14.16-1 (bookworm)
linuxlinux_kernel< 5.15.05.15.0
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.84-15.10.84-1
linuxlinux_kernel>= 0 < 5.14.16-15.14.16-1
linuxlinux_kernel>= 0 < 5.14.16-15.14.16-1
linuxlinux_kernel>= 0 < 5.14.16-15.14.16-1
linuxlinux_kernel>= 0 < 4.15.0-184.1944.15.0-184.194
linuxlinux_kernel>= 0 < 5.4.0-117.1325.4.0-117.132
linuxlinux_kernel>= 0 < 4.4.0-239.2734.4.0-239.273
msrccm1_kernel_5.10.109.1-2_on_cbl_mariner_1.0
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller
netappe-series_santricity_os_controller

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
osv7.8HIGH