← Vulnerability feed

Vulnerability record · CVE-2011-3188 · published 24 May 2012

CVE-2011-3188: Linux kernel vulnerability

Linux · Linux Kernel

The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.

9.1 CVSS 3.1 Critical EPSS 5.1% · top 8.0%
9.1CVSS 3.1 base score, v2 6.4
5.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
15Affected product versions listed by NVD
18References
16 Jun 2026Last modified by NVD

Description

The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Affected products

15 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=bc0b96b54a21246e377122d54569eef71cec535f
http://marc.info/?l=bugtraq&m=139447903326211&w=2 Mailing ListThird Party Advisory
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1 Mailing ListPatchVendor Advisory
http://www.openwall.com/lists/oss-security/2011/08/23/2 Mailing ListPatchThird Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=732658 Issue TrackingPatchThird Party Advisory
https://github.com/torvalds/linux/commit/6e5714eaf77d79ae1c8b47e3e040ff5411b717ec PatchThird Party Advisory
https://github.com/torvalds/linux/commit/bc0b96b54a21246e377122d54569eef71cec535f PatchThird Party Advisory
https://support.f5.com/csp/article/K15301?utm_source=f5support&amp%3Butm_medium=RSS
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6e5714eaf77d79ae1c8b47e3e040ff5411b717ec
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=bc0b96b54a21246e377122d54569eef71cec535f
http://marc.info/?l=bugtraq&m=139447903326211&w=2 Mailing ListThird Party Advisory
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.1 Mailing ListPatchVendor Advisory
http://www.openwall.com/lists/oss-security/2011/08/23/2 Mailing ListPatchThird Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=732658 Issue TrackingPatchThird Party Advisory
https://github.com/torvalds/linux/commit/6e5714eaf77d79ae1c8b47e3e040ff5411b717ec PatchThird Party Advisory
https://github.com/torvalds/linux/commit/bc0b96b54a21246e377122d54569eef71cec535f PatchThird Party Advisory
https://support.f5.com/csp/article/K15301?utm_source=f5support&amp%3Butm_medium=RSS

Track CVE-2011-3188 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-46747F5 BIG-IP configuration utility authentication bypass allows command executionUndisclosed requests can bypass authentication in the BIG-IP configuration utility, letting a network-positioned attacker execute arbitrary system co…KEVEPSS 97%analysed9.8CVE-2022-1388F5 BIG-IP iControl REST authentication bypassUndisclosed requests to the iControl REST interface on multiple F5 BIG-IP modules can bypass authentication, allowing an unauthenticated remote attac…KEVEPSS 100%analysed9.8CVE-2021-22991F5 BIG-IP TMM URI normalization buffer overflowF5 BIG-IP's Traffic Management Microkernel (TMM) mishandles URI normalization for undisclosed requests to a virtual server, triggering a buffer overf…KEVEPSS 61%analysed9.8CVE-2021-22986F5 BIG-IP iControl REST unauthenticated remote command executionThe iControl REST interface on multiple F5 BIG-IP and BIG-IQ versions exposes an unauthenticated remote command execution flaw, tracked as CWE-918 se…KEVEPSS 100%analysed9.8CVE-2020-5902F5 BIG-IP TMUI path traversal leading to remote code executionThe F5 BIG-IP Traffic Management User Interface (TMUI, also called the Configuration utility) contains a path traversal flaw (CWE-22) in undisclosed …KEVEPSS 100%analysed9.8CVE-2014-7169GNU Bash environment variable function parsing command injection (Shellshock variant)GNU Bash through 4.3 bash43-025 processes trailing strings after malformed function definitions in environment variable values, allowing command inje…KEVEPSS 100%analysed9.8CVE-2014-6271GNU Bash environment variable command injection (ShellShock)GNU Bash through 4.3 processes trailing strings after function definitions in environment variable values, allowing injected commands to run when Bas…KEVEPSS 100%analysed9.3CVE-2026-94127F5 big-ip access policy manager heap-based buffer overflow vulnerabilityWhen a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution…KEVEPSS 2.2%

Source: NIST National Vulnerability Database (record CVE-2011-3188), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.