Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Adam Prince

#44876of 53,622
5.7Total CVSS
Vulnerabilities · 1
PT-2011-2579
5.7
2011-03-08
Linux · Linux Kernel · CVE-2011-0714
**Name of the Vulnerable Software and Affected Versions** Linux kernel version 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 **Description** A use-after-free issue in the RPC server sockets functionality of the Linux kernel might allow remote attackers to cause a denial of service via malformed data in a packet. This issue is related to the lockd and the `svc xprt received` function. **Recommendations** For Linux kernel version 2.6.32 on Red Hat Enterprise Linux (RHEL) 6, consider applying a patch to fix the use-after-free vulnerability in the RPC server sockets functionality. As a temporary workaround, restrict access to the RPC service to minimize the risk of exploitation.