PT-2010-5669 · Suse+2 · Suse Linux Enterprise Btrfs-Kmp-Xen+5

Petr Matousek

·

Published

1970-01-01

·

Updated

2023-02-13

·

CVE-2011-2918

CVSS v2.0

5.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.1 SUSE Linux Enterprise kernel-desktop-devel (affected versions not specified) SUSE Linux Enterprise btrfs-kmp-xen (affected versions not specified) SUSE Linux Enterprise btrfs-kmp-pae (affected versions not specified)
Description The issue allows local users to cause a denial of service, potentially leading to a system hang, via a crafted application. It may also lead to violations of confidentiality, integrity, and availability of protected information. The exploitation of these issues can be carried out locally.
Recommendations For Linux kernel versions prior to 3.1, update to version 3.1 or later to resolve the issue. For SUSE Linux Enterprise kernel-desktop-devel, btrfs-kmp-xen, and btrfs-kmp-pae, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Resource Exhaustion

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2015-04341
BDU:2015-04342
BDU:2015-04343
CVE-2011-2918
DSA-2303-1
RHSA-2011:1350
RHSA-2011_1350
RHSA-2012:0333

Affected Products

Linux Kernel
Red Hat
Suse Linux Enterprise Btrfs-Kmp-Pae
Suse Linux Enterprise Btrfs-Kmp-Xen
Suse Linux Enterprise Kernel-Desktop-Devel
Suse