Tracker / CVE-2012-2313
CVE-2012-2313
Low 1.2
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
Affected products and versions
| linux | linux_kernel |
|---|---|
| linux | linux_kernel · … → 3.3.6 |
| novell | suse_linux_enterprise_server |
| redhat | enterprise_linux |
| redhat | enterprise_linux_desktop |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_long_life |
| redhat | enterprise_linux_server_aus |
| redhat | enterprise_linux_server_eus |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.