Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-5321

Опубликовано: 02 мая 2016
Источник: debian
EPSS Низкий

Описание

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted access to a device file under the /dev/pts directory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed3.2.20-1package
linux-2.6fixed3.2.1-1package

Примечания

  • Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c290f8358acaeffd8e0c551ddcc24d1206143376 (v3.2-rc1)

  • Introduced by: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=4a2b5fddd53b80efcb3266ee36e23b8de28e761a (v2.6.28-rc1)

  • 3.2.20-1 is the first version after the src:linux-2.6 -> src:linux rename.

EPSS

Процентиль: 12%
0.00042
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 9 лет назад

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted access to a device file under the /dev/pts directory.

redhat
почти 14 лет назад

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted access to a device file under the /dev/pts directory.

CVSS3: 5.5
nvd
больше 9 лет назад

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted access to a device file under the /dev/pts directory.

CVSS3: 5.5
github
около 3 лет назад

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted access to a device file under the /dev/pts directory.

oracle-oval
около 10 лет назад

ELSA-2015-1221: kernel security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 12%
0.00042
Низкий