PT-2011-1067 · Suse+2 · Ext4Dev-Kmp-Trace+3

·

CVE-2011-4326

·

Publicado

2011-08-31

·

Atualizado

2023-02-13

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.39 ext4dev-kmp-trace (affected versions not specified)
Description The issue allows remote attackers to cause a denial of service, potentially leading to a system crash. This can be achieved by sending fragmented IPv6 UDP packets to a bridge device when a certain UDP Fragmentation Offload configuration is enabled. Multiple vulnerabilities in the ext4dev-kmp-trace package of the SUSE Linux Enterprise operating system can also lead to disruption of protected information availability, with exploitation possible remotely.
Recommendations For Linux kernel versions prior to 2.6.39, update to version 2.6.39 or later to resolve the issue. For ext4dev-kmp-trace, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

NULL Pointer Dereference

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-04359
CVE-2011-4326
RHSA-2011:1465
RHSA-2011_1465
RHSA-2012:0010
USN-1193-1
USN-1256-1
USN-1286-1
USN-1292-1
USN-1293-1
USN-1294-1
USN-1299-1
USN-1302-1
USN-1303-1
USN-1304-1
USN-1311-1

Produtos afetados

Linux Kernel
Red Hat
Suse
Ext4Dev-Kmp-Trace