A vulnerability was found in the Linux kernel in versions prior to v5.14-rc1. Missing size validations on inbound SCTP packets may allow the kernel to read uninitialized memory.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon