Количество 14
Количество 14
GHSA-qpxm-m9h2-3v4r
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system.

CVE-2017-17449
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system.

CVE-2017-17449
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system.

CVE-2017-17449
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system.
CVE-2017-17449
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in ...
ELSA-2018-4108
ELSA-2018-4108: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2018:0115-1
Security update for the Linux Kernel

SUSE-SU-2018:0031-1
Security update for the Linux Kernel

SUSE-SU-2017:3398-1
Security update for the Linux Kernel

openSUSE-SU-2017:3358-1
Security update for the Linux Kernel

SUSE-SU-2017:3410-1
Security update for the Linux Kernel

openSUSE-SU-2017:3359-1
Security update for the Linux Kernel

SUSE-SU-2018:0213-1
Security update for the Linux Kernel
ELSA-2018-1062
ELSA-2018-1062: kernel security, bug fix, and enhancement update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-qpxm-m9h2-3v4r The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system. | CVSS3: 4.7 | 0% Низкий | около 3 лет назад | |
![]() | CVE-2017-17449 The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system. | CVSS3: 4.7 | 0% Низкий | больше 7 лет назад |
![]() | CVE-2017-17449 The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system. | CVSS3: 3.3 | 0% Низкий | больше 7 лет назад |
![]() | CVE-2017-17449 The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system. | CVSS3: 4.7 | 0% Низкий | больше 7 лет назад |
CVE-2017-17449 The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in ... | CVSS3: 4.7 | 0% Низкий | больше 7 лет назад | |
ELSA-2018-4108 ELSA-2018-4108: Unbreakable Enterprise kernel security update (IMPORTANT) | около 7 лет назад | |||
![]() | SUSE-SU-2018:0115-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0031-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2017:3398-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | openSUSE-SU-2017:3358-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2017:3410-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | openSUSE-SU-2017:3359-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0213-1 Security update for the Linux Kernel | больше 7 лет назад | ||
ELSA-2018-1062 ELSA-2018-1062: kernel security, bug fix, and enhancement update (IMPORTANT) | около 7 лет назад |
Уязвимостей на страницу