PT-2013-4860 · Linux · Linux Kernel

Petr Matousek

·

Published

2013-07-28

·

Updated

2023-02-13

·

CVE-2013-4127

CVSS v2.0

4.7

Medium

VectorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.10.3
Description A use-after-free issue in the vhost net set backend function allows local users to cause a denial of service, resulting in an OOPS and system crash, via vectors involving powering on a virtual machine.
Recommendations For versions prior to 3.10.3, update to version 3.10.3 or later to resolve the issue.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2013-4127
USN-1935-1
USN-1936-1

Affected Products

Linux Kernel