CVE-2013-4350

Priority
Description
The IPv6 SCTP implementation in net/sctp/ipv6.c in the Linux kernel through
3.11.1 uses data structures and function calls that do not trigger an
intended configuration of IPsec encryption, which allows remote attackers
to obtain sensitive information by sniffing the network.
Ubuntu-Description
Alan Chester reported a flaw in the IPv6 Stream Control Transmission
Protocol (SCTP) of the Linux kernel. A remote attacker could exploit this
flaw to obtain sensitive information by sniffing network traffic.
Notes
 jdstrand> requires IPv6 on SCTP IPsec traffic
 jdstrand> Per kernel team, too intrusive to backport
Package
Source: linux (LP Ubuntu Debian)
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.12.0-1.3)
Patches:
Introduced by 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2Fixed by 95ee62083cb6453e056562d91f597552021e6ae7
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (was needed now end-of-life)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (was needed now end-of-life)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (see note)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Patches:
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (see note)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (was needed now end-of-life)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):ignored (was needed now end-of-life)
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Package
Upstream:released (3.12~rc2)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
More Information

Updated: 2019-03-19 12:12:21 UTC (commit 15472795df7e9de45b82f2d36b8b419b939f97b2)