imPC@ndo IT

Tracker / CVE-2011-4112

CVE-2011-4112

Medium 5.5

The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to access /proc/net/pktgen/pgctrl, and then using the pktgen package in conjunction with a bridge device for a VLAN interface.

Affected products and versions

avaya 9608_firmware · 6.0 → 6.6.0
avaya 9608g_firmware · 6.0 → 6.6.0
avaya 9611g_firmware · 6.0 → 6.6.0
avaya 9621g_firmware · 6.0 → 6.6.0
avaya 9641g_firmware · 6.0 → 6.6.0
avaya 9641gs_firmware · 6.0 → 6.6.0
linux linux_kernel · … → 3.1

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References