Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2021-3772 Details

Description

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://bugzilla.redhat.com/show_bug.cgi?id=2000694 CVEIssue TrackingPatchThird Party Advisory
https://github.com/torvalds/linux/commit/32f8807a48ae55be0e76880cfe8607a18b5bb0df CVEPatchThird Party Advisory
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=32f8807a48ae55be0e76880cfe8607a18b5bb0df CVEMailing ListPatchVendor Advisory
https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html CVEMailing ListThird Party Advisory
https://security.netapp.com/advisory/ntap-20221007-0001/ CVEThird Party Advisory

see all 16 references

Weakness Enumeration

CWE-IDCWE NameSource
CWE-354Improper Validation of Integrity Check Value[email protected]
CWE-354Improper Validation of Integrity Check Value[email protected]

Affected Products

ProductVersions

Change History

11 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2021-3772
NVD Published Date:
Mar 2, 2022
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2021-3772 Details - Not Deferred