The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| linux | linux_kernel | 3.2 - 3.2.99 | - |
| linux | linux_kernel | 3.3 - 3.10.108 | - |
| linux | linux_kernel | 3.11 - 3.16.54 |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
66
Affected Products
65
References
linux / linux_kernel
| - |
| linux | linux_kernel | 3.17 - 3.18.60 | - |
| linux | linux_kernel | 3.19 - 4.1.43 | - |
| linux | linux_kernel | 4.2 - 4.4.76 | - |
| linux | linux_kernel | 4.5 - 4.9.36 | - |
| linux | linux_kernel | 4.10 - 4.11 | - |
| debian | debian_linux | - | - |
| debian | debian_linux | - | - |
| arista | eos | - | - |
| f5 | arx | 6.2.0 - 6.4.0 | - |
| suse | caas_platform | - | - |
| suse | linux_enterprise_debuginfo | - | - |
| suse | linux_enterprise_debuginfo | - | - |
| suse | linux_enterprise_module_for_public_cloud | - | - |
| suse | linux_enterprise_point_of_sale | - | - |
| suse | openstack_cloud | - | - |
| opensuse | leap | - | - |
| suse | linux_enterprise_desktop | - | - |
| suse | linux_enterprise_desktop | - | - |
| suse | linux_enterprise_high_availability | - | - |
| suse | linux_enterprise_high_availability | - | - |
| suse | linux_enterprise_high_availability_extension | - | - |
| suse | linux_enterprise_live_patching | - | - |
| suse | linux_enterprise_live_patching | - | - |
| suse | linux_enterprise_real_time_extension | - | - |
| suse | linux_enterprise_real_time_extension | - | - |
| suse | linux_enterprise_real_time_extension | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_server | - | - |
| suse | linux_enterprise_software_development_kit | - | - |
| suse | linux_enterprise_software_development_kit | - | - |
| suse | linux_enterprise_software_development_kit | - | - |
| suse | linux_enterprise_workstation_extension | - | - |
| suse | linux_enterprise_workstation_extension | - | - |
| openstack | cloud_magnum_orchestration | - | - |
| canonical | ubuntu_linux | - | - |
| canonical | ubuntu_linux | - | - |
| redhat | mrg_realtime | - | - |
| redhat | enterprise_linux_desktop | - | - |
| redhat | enterprise_linux_desktop | - | - |
| redhat | enterprise_linux_eus | - | - |
| redhat | enterprise_linux_eus | - | - |
| redhat | enterprise_linux_eus | - | - |
| redhat | enterprise_linux_eus | - | - |
| redhat | enterprise_linux_for_real_time | - | - |
| redhat | enterprise_linux_for_real_time_for_nfv | - | - |
| redhat | enterprise_linux_server | - | - |
| redhat | enterprise_linux_server | - | - |
| redhat | enterprise_linux_server_aus | - | - |
| redhat | enterprise_linux_server_aus | - | - |
| redhat | enterprise_linux_server_aus | - | - |
| redhat | enterprise_linux_server_aus | - | - |
| redhat | enterprise_linux_server_tus | - | - |
| redhat | enterprise_linux_server_tus | - | - |
| redhat | enterprise_linux_server_tus | - | - |
| redhat | enterprise_linux_server_tus | - | - |
| redhat | enterprise_linux_workstation | - | - |
| redhat | enterprise_linux_workstation | - | - |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability
Impact