CVE-2010-4563 describes a vulnerability in the Linux kernel's IPv6 implementation that allows remote attackers to detect network sniffing. By sending an ICMPv6 Echo Request to a multicast address, an attacker can infer sniffing activity if an Echo Reply is received. This vulnerability has a CVSS score of 5.0, indicating a medium severity, with low attack complexity and potential for information disclosure (C:P). There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
The Linux kernel when using IPv6 allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent as demonstrated by thcping.
Feb 2, 2012kernel: ipv6: sniffer detection
Apr 15, 2011