PT-2011-1490 · Linux+1 · Linux Kernel+1
Kosuke Tatsukawa
·
Published
2011-01-11
·
Updated
2023-02-13
·
CVE-2010-4263
CVSS v2.0
7.9
High
| Vector | AV:A/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 2.6.34
Description
The issue is related to the igb receive skb function in the Intel Gigabit Ethernet subsystem. When Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered, remote attackers can cause a denial of service (NULL pointer dereference and panic) and possibly have other unspecified impacts via a VLAN tagged frame.
Recommendations
For Linux kernel versions prior to 2.6.34, update to version 2.6.34 or later to resolve the issue.
Exploit
Fix
DoS
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Red Hat