Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-2136

Опубликовано: 09 авг. 2012
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

The sock_alloc_send_pskb function in net/core/sock.c in the Linux kernel before 3.4.5 does not properly validate a certain length value, which allows local users to cause a denial of service (heap-based buffer overflow and system crash) or possibly gain privileges by leveraging access to a TUN/TAP device.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 3.0.37 (исключая)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия от 3.1 (включая) до 3.2.23 (исключая)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия от 3.3 (включая) до 3.4.5 (исключая)

EPSS

Процентиль: 26%
0.00084
Низкий

7.2 High

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 13 лет назад

The sock_alloc_send_pskb function in net/core/sock.c in the Linux kernel before 3.4.5 does not properly validate a certain length value, which allows local users to cause a denial of service (heap-based buffer overflow and system crash) or possibly gain privileges by leveraging access to a TUN/TAP device.

redhat
около 13 лет назад

The sock_alloc_send_pskb function in net/core/sock.c in the Linux kernel before 3.4.5 does not properly validate a certain length value, which allows local users to cause a denial of service (heap-based buffer overflow and system crash) or possibly gain privileges by leveraging access to a TUN/TAP device.

debian
почти 13 лет назад

The sock_alloc_send_pskb function in net/core/sock.c in the Linux kern ...

github
около 3 лет назад

The sock_alloc_send_pskb function in net/core/sock.c in the Linux kernel before 3.4.5 does not properly validate a certain length value, which allows local users to cause a denial of service (heap-based buffer overflow and system crash) or possibly gain privileges by leveraging access to a TUN/TAP device.

oracle-oval
около 13 лет назад

ELSA-2012-0690: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 26%
0.00084
Низкий

7.2 High

CVSS2

Дефекты

CWE-20