CVE-2014-7841

medium
Published 2014-11-30 ยท Modified 2026-05-06
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
5.0

Description

The sctp_process_param function in net/sctp/sm_make_chunk.c in the SCTP implementation in the Linux kernel before 3.17.4, when ASCONF is used, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via a malformed INIT chunk.

Predictions

Exploit likelihood
20%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed3.16.7-ckt2-1
debian debianbullseyefixed3.16.7-ckt2-1
debian debianforkyfixed3.16.7-ckt2-1
debian debiansidfixed3.16.7-ckt2-1
debian debiantrixiefixed3.16.7-ckt2-1
linux linux-kernelaffected
linux linux-kernel3.0affected
linux linux-kernel3.0.1affected
linux linux-kernel3.0.2affected
linux linux-kernel3.0.3affected
linux linux-kernel3.0.4affected
linux linux-kernel3.0.5affected
linux linux-kernel3.0.6affected
linux linux-kernel3.0.7affected
linux linux-kernel3.0.8affected
linux linux-kernel3.0.9affected
linux linux-kernel3.0.10affected
linux linux-kernel3.0.11affected
linux linux-kernel3.0.12affected
linux linux-kernel3.0.13affected
linux linux-kernel3.0.14affected
linux linux-kernel3.0.15affected
linux linux-kernel3.0.16affected
linux linux-kernel3.0.17affected
linux linux-kernel3.0.18affected
linux linux-kernel3.0.19affected
linux linux-kernel3.0.20affected
linux linux-kernel3.0.21affected
linux linux-kernel3.0.22affected
linux linux-kernel3.0.23affected
linux linux-kernel3.0.24affected
linux linux-kernel3.0.25affected
linux linux-kernel3.0.26affected
linux linux-kernel3.0.27affected
linux linux-kernel3.0.28affected
linux linux-kernel3.0.29affected
linux linux-kernel3.0.30affected
linux linux-kernel3.0.31affected
linux linux-kernel3.0.32affected
linux linux-kernel3.0.33affected
linux linux-kernel3.0.34affected
linux linux-kernel3.0.35affected
linux linux-kernel3.0.36affected
linux linux-kernel3.0.37affected
linux linux-kernel3.0.38affected
linux linux-kernel3.0.39affected
linux linux-kernel3.0.40affected
linux linux-kernel3.0.41affected
linux linux-kernel3.0.42affected
linux linux-kernel3.0.43affected
linux linux-kernel3.0.44affected
linux linux-kernel3.0.45affected
linux linux-kernel3.0.46affected
linux linux-kernel3.0.47affected
linux linux-kernel3.0.48affected
linux linux-kernel3.0.49affected
linux linux-kernel3.0.50affected
linux linux-kernel3.0.51affected
linux linux-kernel3.0.52affected
linux linux-kernel3.0.53affected
linux linux-kernel3.0.54affected
linux linux-kernel3.0.55affected
linux linux-kernel3.0.56affected
linux linux-kernel3.0.57affected
linux linux-kernel3.0.58affected
linux linux-kernel3.0.59affected
linux linux-kernel3.0.60affected
linux linux-kernel3.0.61affected
linux linux-kernel3.0.62affected
linux linux-kernel3.0.63affected
linux linux-kernel3.0.64affected
linux linux-kernel3.0.65affected
linux linux-kernel3.0.66affected
linux linux-kernel3.0.67affected
linux linux-kernel3.0.68affected
linux linux-kernel3.1affected
linux linux-kernel3.1.1affected
linux linux-kernel3.1.2affected
linux linux-kernel3.1.3affected
linux linux-kernel3.1.4affected
linux linux-kernel3.1.5affected
linux linux-kernel3.1.6affected
linux linux-kernel3.1.7affected
linux linux-kernel3.1.8affected
linux linux-kernel3.1.9affected
linux linux-kernel3.1.10affected
linux linux-kernel3.2affected
linux linux-kernel3.10affected
linux linux-kernel3.10.0affected
linux linux-kernel3.10.1affected
linux linux-kernel3.10.2affected
linux linux-kernel3.10.3affected
linux linux-kernel3.10.4affected
linux linux-kernel3.10.5affected
linux linux-kernel3.10.6affected
linux linux-kernel3.10.7affected
linux linux-kernel3.10.8affected
linux linux-kernel3.10.9affected
linux linux-kernel3.10.10affected
linux linux-kernel3.10.11affected
linux linux-kernel3.10.12affected
linux linux-kernel3.10.13affected
linux linux-kernel3.10.14affected
linux linux-kernel3.10.15affected
linux linux-kernel3.10.16affected
linux linux-kernel3.10.17affected
linux linux-kernel3.10.18affected
linux linux-kernel3.10.19affected
linux linux-kernel3.10.20affected
linux linux-kernel3.10.21affected
linux linux-kernel3.10.22affected
linux linux-kernel3.10.23affected
linux linux-kernel3.10.24affected
linux linux-kernel3.10.25affected
linux linux-kernel3.10.26affected
linux linux-kernel3.10.27affected
linux linux-kernel3.10.28affected
linux linux-kernel3.10.29affected
linux linux-kernel3.11affected
linux linux-kernel3.11.1affected
linux linux-kernel3.11.2affected
linux linux-kernel3.11.3affected
linux linux-kernel3.11.4affected
linux linux-kernel3.11.5affected
linux linux-kernel3.11.6affected
linux linux-kernel3.11.7affected
linux linux-kernel3.11.8affected
linux linux-kernel3.11.9affected
linux linux-kernel3.11.10affected
linux linux-kernel3.12affected
linux linux-kernel3.12.1affected
linux linux-kernel3.12.2affected
linux linux-kernel3.12.3affected
linux linux-kernel3.12.4affected
linux linux-kernel3.12.5affected
linux linux-kernel3.12.6affected
linux linux-kernel3.12.7affected
linux linux-kernel3.12.8affected
linux linux-kernel3.12.9affected
linux linux-kernel3.12.10affected
linux linux-kernel3.12.11affected
linux linux-kernel3.12.12affected
linux linux-kernel3.12.13affected
linux linux-kernel3.12.14affected
linux linux-kernel3.12.15affected
linux linux-kernel3.12.16affected
linux linux-kernel3.12.17affected
linux linux-kernel3.13affected
linux linux-kernel3.13.1affected
linux linux-kernel3.13.2affected
linux linux-kernel3.13.3affected
linux linux-kernel3.13.4affected
linux linux-kernel3.13.5affected
linux linux-kernel3.13.6affected
linux linux-kernel3.13.7affected
linux linux-kernel3.13.8affected
linux linux-kernel3.13.9affected
linux linux-kernel3.13.10affected
linux linux-kernel3.13.11affected
linux linux-kernel3.14affected
linux linux-kernel3.14.1affected
linux linux-kernel3.14.2affected
linux linux-kernel3.14.3affected
linux linux-kernel3.14.4affected
linux linux-kernel3.14.5affected
linux linux-kernel3.15affected
linux linux-kernel3.15.1affected
linux linux-kernel3.15.2affected
linux linux-kernel3.15.3affected
linux linux-kernel3.15.4affected
linux linux-kernel3.15.5affected
linux linux-kernel3.15.6affected
linux linux-kernel3.15.7affected
linux linux-kernel3.15.8affected
linux linux-kernel3.16.0affected
linux linux-kernel3.16.1affected
linux linux-kernel3.17affected
linux linux-kernel3.17.1affected
linux linux-kernel3.17.2affected

References

CWEs

CWE-399

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.