Описание
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIONS setsockopt system call.
Комментарий
Per https://access.redhat.com/security/cve/CVE-2013-0310 "This issue did affect the version of Linux kernel as shipped with Red Hat Enterprise Linux 6."
Ссылки
Уязвимые конфигурации
Одно из
EPSS
6.6 Medium
CVSS2
Дефекты
Связанные уязвимости
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIONS setsockopt system call.
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIONS setsockopt system call.
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux k ...
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIONS setsockopt system call.
ELSA-2013-2507: Unbreakable Enterprise kernel security and bug fix update (IMPORTANT)
EPSS
6.6 Medium
CVSS2