Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2006-2275 Details

Description

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver application that cannot process the messages quickly enough, which leads to "spillover of the receive buffer."

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
http://git.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=7c3ceb4fb9667f34f1599a062efecf4cdc4a4ce5 CVEBroken Link
http://secunia.com/advisories/20716 CVEBroken Link
http://secunia.com/advisories/21465 CVEBroken Link
http://secunia.com/advisories/22417 CVEBroken Link
https://exchange.xforce.ibmcloud.com/vulnerabilities/26433 CVEThird Party AdvisoryVDB Entry

see all 22 references

Weakness Enumeration

CWE-IDCWE NameSource
CWE-667Improper Locking[email protected]

Affected Products

ProductVersions
lksctp stream control transmission protocol
< 2.6.17

CPE

  • cpe:2.3:a:lksctp:stream_control_transmission_protocol:*:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
canonical ubuntu linux
5.04
5.10
6.06

CPE

  • cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

9 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2006-2275
NVD Published Date:
May 9, 2006
NVD Last Modified:
Jun 16, 2026
Source:
[email protected]
CVE-2006-2275 Details - Not Deferred