PT-2012-1310 · Linux+1 · Linux Kernel+1

Giacomo Comes

·

Published

2011-04-08

·

Updated

2023-02-13

·

CVE-2010-4648

CVSS v2.0

3.3

Low

VectorAV:A/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.37
Description The issue is related to the orinoco ioctl set auth function in the Linux kernel, which does not properly implement a TKIP protection mechanism. This makes it easier for remote attackers to obtain access to a Wi-Fi network by reading Wi-Fi frames.
Recommendations For Linux kernel versions prior to 2.6.37, update to version 2.6.37 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2010-4648
RHSA-2011:0330
RHSA-2011:0421
RHSA-2011_0421

Affected Products

Linux Kernel
Red Hat