The __skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel before 4.3 does not ensure that n_proto, ip_proto, and thoff are initialized, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a single crafted MPLS packet.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-08-28T20:00:00
Updated: 2024-08-05T19:05:20.027Z
Reserved: 2017-08-28T00:00:00
Link: CVE-2017-13715
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-08-29T01:35:13.453
Modified: 2024-11-21T03:11:29.750
Link: CVE-2017-13715
Redhat