PT-2013-2218 · Linux+1 · Linux Kernel+1

Tommi Rantala

·

Publicado

2013-02-19

·

Atualizado

2023-02-13

·

CVE-2013-0290

CVSS v2.0

4.9

Média

VetorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.8
Description The issue is related to the skb recv datagram function in the Linux kernel, which does not properly handle the MSG PEEK flag with zero-length data. This allows local users to cause a denial of service, resulting in an infinite loop and system hang, via a crafted application.
Recommendations For Linux kernel versions prior to 3.8, update to version 3.8 or later to resolve the issue.

Exploit

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-0290
OPENSUSE-SU-2013_0951-1
OPENSUSE-SU-2013_1042-1
RHSA-2013:0622
USN-1768-1
USN-1769-1
USN-1774-1

Produtos afetados

Linux Kernel
Suse