PT-2012-1497 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2011-05-10

·

Updated

2023-02-13

·

CVE-2011-0006

CVSS v2.0

1.9

Low

VectorAV:L/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.37
Description The issue allows local users to bypass Integrity Measurement Architecture (IMA) rules under certain circumstances when the Linux Security Modules (LSM) framework is disabled. This can happen when an administrator adds an IMA rule for LSM, and it can be exploited by local users in opportunistic situations.
Recommendations For Linux kernel versions prior to 2.6.37, update to version 2.6.37 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

CVE-2011-0006
RHSA-2011:0498
RHSA-2011_0498

Affected Products

Linux Kernel
Red Hat