Race condition in sctp_wait_for_sndbuf function in Linux kernel before 4.9.11

Race condition in sctp_wait_for_sndbuf function in Linux kernel before 4.9.11

CVE-2017-5986 · HIGH Severity

AV:N/AC:M/AU:N/C:N/I:N/A:C

Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of service (assertion failure and panic) via a multithreaded application that peels off an association in a certain buffer-full state.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.