PT-2011-1490 · Linux+1 · Linux Kernel+1

Kosuke Tatsukawa

·

Published

2011-01-11

·

Updated

2023-02-13

·

CVE-2010-4263

CVSS v2.0

7.9

High

VectorAV:A/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.34
Description The issue is related to the igb receive skb function in the Intel Gigabit Ethernet subsystem. When Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered, remote attackers can cause a denial of service (NULL pointer dereference and panic) and possibly have other unspecified impacts via a VLAN tagged frame.
Recommendations For Linux kernel versions prior to 2.6.34, update to version 2.6.34 or later to resolve the issue.

Exploit

Fix

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2010-4263
RHSA-2011:0007
RHSA-2011:0017
RHSA-2011_0007
RHSA-2011_0017

Affected Products

Linux Kernel
Red Hat