PT-2013-1385 · Linux+1 · Linux Kernel+1

Vasiliy Kulikov

·

Published

2011-05-10

·

Updated

2023-02-13

·

CVE-2011-1019

CVSS v2.0

1.9

Low

VectorAV:L/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.38
Description The issue allows local users to bypass an intended capability requirement, enabling them to load arbitrary modules. This is achieved by leveraging the CAP NET ADMIN capability in the dev load function in net/core/dev.c.
Recommendations For versions prior to 2.6.38, update to version 2.6.38 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2011-1019
RHSA-2011:0498
RHSA-2011:0500
RHSA-2011_0498

Affected Products

Linux Kernel
Red Hat