PT-2019-6717 · Linux · Linux Kernel

Published

2019-07-27

·

Updated

2022-11-03

·

CVE-2011-5327

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.1
Description The issue is related to an off-by-one error in the tcm loop make naa tpg() function, located in the drivers/target/loopback/tcm loop.c file. This error could result in at least memory corruption.
Recommendations For Linux kernel versions prior to 3.1, update to version 3.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the tcm loop make naa tpg() function until a patch is available.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2011-5327

Affected Products

Linux Kernel