An out-of-bounds read vulnerability was found in Netfilter Connection Tracking (conntrack) in the Linux kernel. This flaw allows a remote user to disclose sensitive information via the DCCP protocol.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 4 | Medium | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N |
| Product | Vendor | Version |
|---|---|---|
| Red Hat Enterprise Linux 8 | Red Hat | <= 4.14.* |
| Red Hat Enterprise Linux 7 | Red Hat | < 8d1753973f598531baaa2c1033cf7f7b5bb004b0 |
| Red Hat Enterprise Linux 6 | Red Hat | 3.10 |
| Red Hat Enterprise Linux 9 | Red Hat | <= 5.4.* |
| Red Hat Enterprise Linux 8 | Red Hat | <= 4.19.* |
| Red Hat Enterprise Linux 7 | Red Hat | < 3.10 |
| Red Hat Enterprise Linux 9 | Red Hat | < 567c0411dc3b424fc7bd1e6109726d7ba32d4f73 |