CVE-2012-4565

Description

The tcp_illinois_info function in net/ipv4/tcp_illinois.c in the Linux kernel before 3.4.19, when the net.ipv4.tcp_congestion_control illinois setting is enabled, allows local users to cause a denial of service (divide-by-zero error and OOPS) by reading TCP stats.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.058

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel (USN-1644-1) linux-image-3.2.0-34-generic_3.2.0-34.53_i386.debLinux
Linux kernel (USN-1644-1) linux-image-3.2.0-34-generic_3.2.0-34.53_amd64.debLinux
Linux kernel (USN-1644-1) linux-image-3.2.0-34-virtual_3.2.0-34.53_i386.debLinux
Linux kernel (USN-1644-1) linux-image-3.2.0-34-virtual_3.2.0-34.53_amd64.debLinux
Linux kernel (USN-1644-1) linux-image-3.2.0-34-generic-pae_3.2.0-34.53_i386.debLinux
Linux kernel LTS from Quantal (USN-1704-1) linux-image-3.5.0-22-generic_3.5.0-22.34~precise1_i386.debLinux
Linux kernel LTS from Quantal (USN-1704-1) linux-image-3.5.0-22-generic_3.5.0-22.34~precise1_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234