PT-2011-4398 · Openfabrics · Openfabrics Enterprise Distribution

Marcus Meissner

·

Published

2011-09-17

·

Updated

2023-02-13

·

CVE-2011-3345

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions OpenFabrics Enterprise Distribution (OFED) versions prior to 1.5.3
Description The issue is related to the handling of non-array variables in the ib sdp module, which can lead to a denial of service due to stack memory corruption and system crash when reading the /proc/net/sdpstats file.
Recommendations For versions prior to 1.5.3, update to version 1.5.3 or later to resolve the issue.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2011-3345

Affected Products

Openfabrics Enterprise Distribution