Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxmm-x2w5-24cg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.

EPSS

Процентиль: 35%
0.00429
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
почти 14 лет назад

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.

redhat
почти 14 лет назад

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.

nvd
почти 14 лет назад

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.

debian
почти 14 лет назад

The Netlink implementation in the Linux kernel before 3.2.30 does not ...

fstec
больше 11 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 35%
0.00429
Низкий

Дефекты

CWE-287