Skip to content

CVE-2014-2309

The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory consumption) via a flood of ICMPv6 Router Advertisement packets.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0091 (0.9%)
Percentile: 75.8%
EPSS: 2026-05-06

Affects

linux:linux_kernelopensuse:opensusesuse:linux_enterprise_server

Technical description

The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory consumption) via a flood of ICMPv6 Router Advertisement packets.

Published: 3/11/2014, 1:01:10 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam