Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2012-0207

47
FAUCET Score

CVE-2012-0207 describes a denial-of-service vulnerability in the Linux kernel, specifically within the igmp_heard_query function in net/ipv4/igmp.c, affecting versions before 3.2.1 and various enterprise Linux distributions. This high-severity flaw (CVSS 7.5) allows unauthenticated remote attackers to trigger a divide-by-zero error and system panic by sending specially crafted IGMP packets, requiring no user interaction. While not on the KEV catalog, an exploit is publicly available on ExploitDB, though there is minimal community discussion or media coverage surrounding this decade-old vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
< 3.0.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 3.1, < 3.1.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 3.2, < 3.2.1CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
5.6CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux_eus:5.6:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
20.49%
Probability of exploitation in next 30 days
EPSS Percentile
97.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
ExploitDB: EDB-18378 · Jan 17, 2012
This CVE's current EPSS score of 0.2049 is in the 96th percentile among its peer group of 51,466 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

github_advisorypatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: kernel-0:2.6.18-274.18.1.el5
View patch
redhatpatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: kernel-rt-0:3.0.18-rt34.53.el6rt
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-6Fixed in: rhev-hypervisor6-0:6.2-20120320.0.el6_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel-0:2.6.32-220.7.1.el6
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux Extended Update Support 5.6Fixed in: kernel

Vendor Advisories (1)

redhatCVE-2012-0207Moderate

kernel: igmp: Avoid zero delay when receiving odd mixture of IGMP queries

Jan 10, 2012

References

bugs.debian.org / cgi-bin/bugreport.cgi
ExploitMailing ListThird Party Advisory
git.kernel.org
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
github.com / torvalds/linux/commit/25c413ad0029ea86008234be28aee33456e53e5b
PatchThird Party Advisory
github.com / torvalds/linux/commit/a8c1f65c79cbbb2f7da782d4c9d15639a9b94b27
PatchThird Party Advisory
kernel.org / pub/linux/kernel/v3.x/ChangeLog-3.2.1
Mailing ListPatchVendor Advisory
openwall.com / lists/oss-security/2012/01/10/5
Mailing ListThird Party Advisory