CVE-2011-3188
9.1
CRITICAL · CVSS 3.1 · EPSS 5% (pctl 92)
In your normal cycle
Critical by CVSS (9.1), but no sign of active exploitation.
Description
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.
Scoring
| CVSS | 9.1 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H |
| EPSS | 5.03% — more likely to be exploited than 92% of all CVEs |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2012-05-24 |
| Last modified | 2026-06-16 |
Affected (15)
| Vendor | Product |
|---|---|
| f5 | arx |
| f5 | big-ip access policy manager |
| f5 | big-ip analytics |
| f5 | big-ip application security manager |
| f5 | big-ip edge gateway |
| f5 | big-ip global traffic manager |
| f5 | big-ip link controller |
| f5 | big-ip local traffic manager |
| f5 | big-ip protocol security module |
| f5 | big-ip wan optimization manager |
| f5 | big-ip webaccelerator |
| f5 | enterprise manager |
| f5 | firepass |
| linux | linux kernel |
| redhat | enterprise linux |
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=bc0b96b54a21246e377122d54569eef71cec535f
- http://marc.info/?l=bugtraq&m=139447903326211&w=2
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1
- http://www.openwall.com/lists/oss-security/2011/08/23/2
- https://bugzilla.redhat.com/show_bug.cgi?id=732658
- https://github.com/torvalds/linux/commit/6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
- https://github.com/torvalds/linux/commit/bc0b96b54a21246e377122d54569eef71cec535f
- https://support.f5.com/csp/article/K15301?utm_source=f5support&%3Butm_medium=RSS
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=bc0b96b54a21246e377122d54569eef71cec535f
- http://marc.info/?l=bugtraq&m=139447903326211&w=2
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1
- http://www.openwall.com/lists/oss-security/2011/08/23/2
- https://bugzilla.redhat.com/show_bug.cgi?id=732658
- https://github.com/torvalds/linux/commit/6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
- https://github.com/torvalds/linux/commit/bc0b96b54a21246e377122d54569eef71cec535f
- https://support.f5.com/csp/article/K15301?utm_source=f5support&%3Butm_medium=RSS
→ the Explorer · watch your stack · NVD