CVE-2011-3188 describes a critical vulnerability in the IPv4 and IPv6 implementations of the Linux kernel, affecting versions prior to 3.1, as well as products from F5 and Red Hat. The flaw stems from the use of a modified MD4 algorithm for generating sequence numbers and Fragment Identification values. This weakness allows remote attackers to predict these values, enabling denial-of-service attacks by disrupting networking or session hijacking through crafted packets. While the CVSS score is 9.1 (CRITICAL) with a high FAUCET Risk Score of 93/100, indicating a severe impact with low attack complexity, there is no evidence of active exploitation, nor are there publicly available exploits in Metasploit, Nuclei, or ExploitDB. However, the vulnerability has garnered significant community discussion, with 10 mentions, suggesting awareness and potential interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.1CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:*:*:*:*:*:* | ||
>= 6.0.0, <= 6.4.0CPE matchmatch criteria | cpe:2.3:a:f5:arx:*:*:*:*:*:*:*:* | ||
>= 10.1.0, <= 10.2.4CPE matchmatch criteria | cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:* | ||
>= 11.0.0, <= 11.1.0CPE matchmatch criteria | cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.