← Back

CVE-2012-6657

nvd nist
Published: Sep 28, 2014Modified: May 6, 2026

JSON object

Loading...
4.9
Vector
AV:L/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 3.9 / Impact: 6.9
Source: NVD

Description

The sock_setsockopt function in net/core/sock.c in the Linux kernel before 3.5.7 does not ensure that a keepalive action is associated with a stream socket, which allows local users to cause a denial of service (system crash) by leveraging the ability to create a raw socket.

Affected (8)

1 product
Linux Kernel
1 product
Suse Linux Enterprise Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Up to 3.5.6
Version 3.5.1
Version 3.5.2
Version 3.5.3
Version 3.5.4
Version 3.5.5
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Novell
Version 10.0 sp4
Version 11.0 sp1

Related CWEs

References (18)

Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.