CVE-2013-1763: Linux Kernel
High severity, CVSS 7.2. EPSS: 4.2% chance of exploitation in the next 30 days.
Array index error in the __sock_diag_rcv_msg function in net/core/sock_diag.c in the Linux kernel before 3.7.10 allows local users to gain privileges via a large family value in a Netlink message.
Affected products
- Linux Linux Kernel: from 3.3, before 3.4.34 (fixed in 3.4.34); from 3.5, before 3.7.10 (fixed in 3.7.10); from 3.8, before 3.8.1 (fixed in 3.8.1)
Published 2013-02-28. Last modified 2026-06-16.