AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2010-4526

HIGH · CVSS 7.1 EPSS 2.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-01-11 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2010-4526
Severity
HIGH
CVSS
7.1
EPSS
2.52%
Linux

Original Filing — NVD Description

Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked by a user, which causes the socket to be freed and triggers list corruption, related to the sctp_wait_for_connect function.