Security Advisory

CVE-2019-8956

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-04-01 18:39:32
Last updated 2024-08-04 21:31:37
Assigner flexera
State PUBLISHED

Description

In the Linux Kernel before versions 4.20.8 and 4.19.21 a use-after-free error in the "sctp_sendmsg()" function (net/sctp/socket.c) when handling SCTP_SENDALL flag can be exploited to corrupt memory.