An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

Project Subscriptions

Vendors Products
Linux Kernel Subscribe
Bootstrap Os Subscribe
Cloud Volumes Ontap Mediator Subscribe
E-series Santricity Os Controller Subscribe
H300e Firmware Subscribe
H300s Firmware Subscribe
H410c Firmware Subscribe
H410s Firmware Subscribe
H500e Firmware Subscribe
H500s Firmware Subscribe
H610c Firmware Subscribe
H610s Firmware Subscribe
H615c Firmware Subscribe
H700e Firmware Subscribe
H700s Firmware Subscribe
Hci Compute Node Subscribe
Solidfire\, Enterprise Sds \& Hci Storage Node Subscribe
Solidfire \& Hci Management Node Subscribe
Enterprise Linux Subscribe
Rhel Eus Subscribe
Rhev Hypervisor Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2020-23994 An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.
Ubuntu USN Ubuntu USN USN-6001-1 Linux kernel (AWS) vulnerabilities
Ubuntu USN Ubuntu USN USN-6013-1 Linux kernel (AWS) vulnerabilities
Ubuntu USN Ubuntu USN USN-6014-1 Linux kernel vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T17:30:08.304Z

Reserved: 2022-02-26T00:00:00

Link: CVE-2020-36516

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-26T04:15:06.933

Modified: 2024-11-21T05:29:43.833

Link: CVE-2020-36516

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-02-28T00:00:00Z

Links: CVE-2020-36516 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses