CVE-2015-5366: Linux Kernel

Medium severity, CVSS 5.0. EPSS: 6.1% chance of exploitation in the next 30 days.

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364.

Affected products

  • Linux Linux Kernel: up to and including 4.0.5
  • Red Hat Enterprise Linux Server Aus: version 6.5 only

Published 2015-08-31. Last modified 2026-06-17.