PT-2010-1833 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2010-01-19

·

Updated

2023-02-13

·

CVE-2010-0007

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.33-rc4
Description The issue allows local users to bypass intended access restrictions and configure arbitrary network-traffic filtering. This is due to the ebtables module in the netfilter framework not requiring the CAP NET ADMIN capability for setting or modifying rules.
Recommendations For Linux kernel versions prior to 2.6.33-rc4, update to version 2.6.33-rc4 or later to resolve the issue. As a temporary workaround, consider restricting access to the ebtables module to minimize the risk of exploitation.

Fix

Weakness Enumeration

Related Identifiers

CVE-2010-0007
DSA-1996-1
DSA-2003-1
DSA-2005-1
RHSA-2010:0146
RHSA-2010:0147
RHSA-2010:0161
RHSA-2010_0146
RHSA-2010_0147

Affected Products

Linux Kernel
Red Hat