CVE-2015-1465
EPSS 6.5%
Description
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory consumption or system crash) via a flood of packets.
How to fix CVE-2015-1465
To remediate CVE-2015-1465, upgrade the affected package to a fixed version below.
- Debian/linux—upgrade to 3.16.7-ckt7-1 or later
Is CVE-2015-1465 being exploited?
Moderate — EPSS is 6.5%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 3.16.7-ckt7-1