Skip to content

CVE-2014-2851

Integer overflow in the ping_init_sock function in net/ipv4/ping.c in the Linux kernel through 3.14.1 allows local users to cause a denial of service (use-after-free and system crash) or possibly gain privileges via a crafted application that leverages an improperly managed reference counter.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0022 (0.2%)
Percentile: 44.4%
EPSS: 2026-05-06

Affects

linux:linux_kerneldebian:debian_linux

Technical description

Integer overflow in the ping_init_sock function in net/ipv4/ping.c in the Linux kernel through 3.14.1 allows local users to cause a denial of service (use-after-free and system crash) or possibly gain privileges via a crafted application that leverages an improperly managed reference counter.

Published: 4/14/2014, 11:55:07 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam