Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Adam Prince

#44887de 53,622
5.7CVSS total
Vulnerabilidades · 1
PT-2011-2579
5.7
2011-03-08
Linux · Linux Kernel · CVE-2011-0714
**Name of the Vulnerable Software and Affected Versions** Linux kernel version 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 **Description** A use-after-free issue in the RPC server sockets functionality of the Linux kernel might allow remote attackers to cause a denial of service via malformed data in a packet. This issue is related to the lockd and the `svc xprt received` function. **Recommendations** For Linux kernel version 2.6.32 on Red Hat Enterprise Linux (RHEL) 6, consider applying a patch to fix the use-after-free vulnerability in the RPC server sockets functionality. As a temporary workaround, restrict access to the RPC service to minimize the risk of exploitation.