CVE-2006-1858
Linux Kernel - Improper Input Validation
Title source: ruleDescription
SCTP in Linux kernel before 2.6.16.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a chunk length that is inconsistent with the actual length of provided parameters.
References (26)
... and 6 more
Scores
EPSS
0.1139
EPSS Percentile
93.4%
Classification
CWE
CWE-20
Status
draft
Affected Products (50)
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 35 more
Timeline
Published
May 22, 2006
Tracked Since
Feb 18, 2026