CVE-2013-0290: Linux Kernel

Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.

The __skb_recv_datagram function in net/core/datagram.c in the Linux kernel before 3.8 does not properly handle the MSG_PEEK flag with zero-length data, which allows local users to cause a denial of service (infinite loop and system hang) via a crafted application.

Affected products

  • Linux Linux Kernel: up to and including 3.7.9; version 3.0 only; version 3.0.1 only; version 3.0.2 only; version 3.0.3 only; version 3.0.4 only; …

Published 2013-02-19. Last modified 2026-06-16.