CVE Vulnerabilities

CVE-2011-1770

Integer Underflow (Wrap or Wraparound)

Published: Jun 24, 2011 | Modified: Apr 11, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
7.8 IMPORTANT
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before 2.6.33.14 allows remote attackers to cause a denial of service via a Datagram Congestion Control Protocol (DCCP) packet with an invalid feature options length, which triggers a buffer over-read.

Weakness

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

Affected Software

NameVendorStart VersionEnd Version
Linux_kernelLinux*2.6.33.14 (excluding)
Red Hat Enterprise Linux 6RedHatkernel-0:2.6.32-131.2.1.el6*
Red Hat Enterprise MRG 2RedHatkernel-rt-0:2.6.33.9-rt31.75.el6rt*
LinuxUbuntulucid*
LinuxUbuntumaverick*
LinuxUbuntunatty*
LinuxUbuntuupstream*
Linux-ec2Ubuntulucid*
Linux-ec2Ubuntumaverick*
Linux-ec2Ubuntuupstream*
Linux-fsl-imx51Ubuntulucid*
Linux-fsl-imx51Ubuntuupstream*
Linux-lts-backport-maverickUbuntulucid*
Linux-lts-backport-maverickUbuntuupstream*
Linux-lts-backport-nattyUbuntuupstream*
Linux-mvl-doveUbuntulucid*
Linux-mvl-doveUbuntumaverick*
Linux-mvl-doveUbuntuupstream*
Linux-ti-omap4Ubuntumaverick*
Linux-ti-omap4Ubuntunatty*
Linux-ti-omap4Ubuntuupstream*

References