PT-2012-1861 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Publicado

2012-01-10

·

Atualizado

2023-02-13

·

CVE-2011-4325

CVSS v2.0

4.9

Média

VetorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.31-rc6
Description The issue is related to the NFS implementation in the Linux kernel, where certain functions are called without properly initializing specific data. This can be exploited by local users to cause a denial of service, resulting in a NULL pointer dereference and O DIRECT oops. An example of exploitation is demonstrated using the diotest4 test from the LTP suite.
Recommendations For Linux kernel versions prior to 2.6.31-rc6, update to version 2.6.31-rc6 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2011-4325
RHSA-2012:0007
RHSA-2012_0007

Produtos afetados

Linux Kernel
Red Hat