Upstream information

CVE-2010-0008 at MITRE

Description

The sctp_rcv_ootb function in the SCTP implementation in the Linux kernel before 2.6.23 allows remote attackers to cause a denial of service (infinite loop) via (1) an Out Of The Blue (OOTB) chunk or (2) a chunk of zero length.

SUSE information

CVSS v2 Scores
  National Vulnerability Database
Base Score 7.79
Vector AV:N/AC:L/Au:N/C:N/I:N/A:C
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
SUSE Bugzilla entry: 586195 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise SDK 10 SP3
  • kernel-debug >= 2.6.16.60-0.79.1
sles10-sp3.ia64
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.ia64
ZYPP Patch Nr: 7564
SUSE Linux Enterprise Server 10 SP3
  • kernel-debug >= 2.6.16.60-0.79.1
  • kernel-default >= 2.6.16.60-0.79.1
  • kernel-source >= 2.6.16.60-0.79.1
  • kernel-syms >= 2.6.16.60-0.79.1
sles10-sp3.ia64
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.ia64
ZYPP Patch Nr: 7564
SUSE Linux Enterprise SDK 10 SP3
SUSE Linux Enterprise Server for SAP 10 SP3
  • kernel-debug >= 2.6.16.60-0.79.1
  • kernel-default >= 2.6.16.60-0.79.1
  • kernel-kdump >= 2.6.16.60-0.79.1
  • kernel-smp >= 2.6.16.60-0.79.1
  • kernel-source >= 2.6.16.60-0.79.1
  • kernel-syms >= 2.6.16.60-0.79.1
  • kernel-xen >= 2.6.16.60-0.79.1
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.x86-64
ZYPP Patch Nr: 7567
SUSE Linux Enterprise SDK 10 SP3
  • kernel-debug >= 2.6.16.60-0.79.1
  • kernel-kdump >= 2.6.16.60-0.79.1
  • kernel-xen >= 2.6.16.60-0.79.1
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.x86-64
ZYPP Patch Nr: 7567
SUSE Linux Enterprise Server 10 SP3
  • kernel-default >= 2.6.16.60-0.79.1
  • kernel-source >= 2.6.16.60-0.79.1
  • kernel-syms >= 2.6.16.60-0.79.1
sles10-sp3-debuginfo.s390x
sles10-sp3.s390x
ZYPP Patch Nr: 7566
SUSE Linux Enterprise SDK 10 SP3
  • kernel-kdump >= 2.6.16.60-0.79.1
sle10-sp3-sdk.ppc
sles10-sp3-debuginfo.ppc
sles10-sp3.ppc
ZYPP Patch Nr: 7565
SUSE Linux Enterprise Server 10 SP3
  • kernel-default >= 2.6.16.60-0.79.1
  • kernel-iseries64 >= 2.6.16.60-0.79.1
  • kernel-kdump >= 2.6.16.60-0.79.1
  • kernel-ppc64 >= 2.6.16.60-0.79.1
  • kernel-source >= 2.6.16.60-0.79.1
  • kernel-syms >= 2.6.16.60-0.79.1
sle10-sp3-sdk.ppc
sles10-sp3-debuginfo.ppc
sles10-sp3.ppc
ZYPP Patch Nr: 7565
SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-smp >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7515
SLE SDK 10 SP4 for X86-64
  • kernel-debug >= 2.6.16.60-0.87.1
  • kernel-kdump >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7515
SUSE Linux Enterprise Server 10 SP4 for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.87.1
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-kdump >= 2.6.16.60-0.87.1
  • kernel-smp >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7515
SUSE Linux Enterprise Server 10 SP4 for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
sles10-sp4.s390x
sles10-sp4-debuginfo.s390x
ZYPP Patch Nr: 7512
SLE SDK 10 SP4 for IBM iSeries and IBM pSeries
  • kernel-kdump >= 2.6.16.60-0.87.1
sles10-sp4.ppc
sles10-sp4-debuginfo.ppc
ZYPP Patch Nr: 7514
SUSE Linux Enterprise Server 10 SP4 for IBM POWER
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-iseries64 >= 2.6.16.60-0.87.1
  • kernel-kdump >= 2.6.16.60-0.87.1
  • kernel-ppc64 >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
sles10-sp4.ppc
sles10-sp4-debuginfo.ppc
ZYPP Patch Nr: 7514
SUSE Linux Enterprise Desktop 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.87.1
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-smp >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
  • kernel-xenpae >= 2.6.16.60-0.87.1
sles10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7516
SLE SDK 10 SP4 for x86
  • kernel-debug >= 2.6.16.60-0.87.1
  • kernel-kdump >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
  • kernel-xenpae >= 2.6.16.60-0.87.1
sles10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7516
SUSE Linux Enterprise Server 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.87.1
  • kernel-debug >= 2.6.16.60-0.87.1
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-kdump >= 2.6.16.60-0.87.1
  • kernel-kdumppae >= 2.6.16.60-0.87.1
  • kernel-smp >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
  • kernel-vmi >= 2.6.16.60-0.87.1
  • kernel-vmipae >= 2.6.16.60-0.87.1
  • kernel-xen >= 2.6.16.60-0.87.1
  • kernel-xenpae >= 2.6.16.60-0.87.1
sles10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7516
SUSE Linux Enterprise SDK 10 SP3
  • kernel-debug >= 2.6.16.60-0.79.1
  • kernel-kdump >= 2.6.16.60-0.79.1
  • kernel-xen >= 2.6.16.60-0.79.1
  • kernel-xenpae >= 2.6.16.60-0.79.1
sles10-sp3.x86
sle10-sp3-sdk.x86
sles10-sp3-debuginfo.x86
ZYPP Patch Nr: 7568
SUSE Linux Enterprise Server 10 SP3
  • kernel-bigsmp >= 2.6.16.60-0.79.1
  • kernel-debug >= 2.6.16.60-0.79.1
  • kernel-default >= 2.6.16.60-0.79.1
  • kernel-kdump >= 2.6.16.60-0.79.1
  • kernel-kdumppae >= 2.6.16.60-0.79.1
  • kernel-smp >= 2.6.16.60-0.79.1
  • kernel-source >= 2.6.16.60-0.79.1
  • kernel-syms >= 2.6.16.60-0.79.1
  • kernel-vmi >= 2.6.16.60-0.79.1
  • kernel-vmipae >= 2.6.16.60-0.79.1
  • kernel-xen >= 2.6.16.60-0.79.1
  • kernel-xenpae >= 2.6.16.60-0.79.1
sles10-sp3.x86
sle10-sp3-sdk.x86
sles10-sp3-debuginfo.x86
ZYPP Patch Nr: 7568
SLE SDK 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.87.1
sles10-sp4-debuginfo.ia64
sles10-sp4.ia64
ZYPP Patch Nr: 7513
SUSE Linux Enterprise Server 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.87.1
  • kernel-default >= 2.6.16.60-0.87.1
  • kernel-source >= 2.6.16.60-0.87.1
  • kernel-syms >= 2.6.16.60-0.87.1
sles10-sp4-debuginfo.ia64
sles10-sp4.ia64
ZYPP Patch Nr: 7513