Tracker / CVE-2011-4112
CVE-2011-4112
Medium 5.5
The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to access /proc/net/pktgen/pgctrl, and then using the pktgen package in conjunction with a bridge device for a VLAN interface.
Affected products and versions
| avaya | 9608_firmware · 6.0 → 6.6.0 |
|---|---|
| avaya | 9608g_firmware · 6.0 → 6.6.0 |
| avaya | 9611g_firmware · 6.0 → 6.6.0 |
| avaya | 9621g_firmware · 6.0 → 6.6.0 |
| avaya | 9641g_firmware · 6.0 → 6.6.0 |
| avaya | 9641gs_firmware · 6.0 → 6.6.0 |
| linux | linux_kernel · … → 3.1 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.