Summary
It is possible to crash the remote host by sending it malformed ICMP packets.
Description :
Linux Kernels older than version 2.6.13 contains a bug which may allow an attacker to cause a NULL pointer dereference by sending malformed ICMP packets, thus resulting in a kernel panic.
This flaw is present only if SCTP support is enabled on the remote host.
An attacker to make this host crash continuously, thus preventing legitimate users from using it.
Solution
Ugprade to Linux 2.6.13 or newer, or disable SCTP support.
References
Updated on 2015-03-25