Lucene search

K
cve[email protected]CVE-2010-4263
HistoryJan 18, 2011 - 6:03 p.m.

CVE-2010-4263

2011-01-1818:03:07
CWE-476
web.nvd.nist.gov
49
8
cve-2010-4263
igb_receive_skb function
drivers/net/igb/igb_main.c
linux kernel
sr-iov
promiscuous mode
vlan
denial of service

7.9 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:N/C:C/I:C/A:C

6.2 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

78.2%

The igb_receive_skb function in drivers/net/igb/igb_main.c in the Intel Gigabit Ethernet (aka igb) subsystem in the Linux kernel before 2.6.34, when Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered, allows remote attackers to cause a denial of service (NULL pointer dereference and panic) and possibly have unspecified other impact via a VLAN tagged frame.

Affected configurations

NVD
Node
linuxlinux_kernelRange<2.6.34
Node
vmwareesxMatch3.0.0
OR
vmwareesxMatch3.0.1
OR
vmwareesxMatch3.0.2
OR
vmwareesxMatch3.0.3
OR
vmwareesxMatch3.5
OR
vmwareesxMatch3.5update1
OR
vmwareesxMatch3.5update2
OR
vmwareesxMatch3.5update3
OR
vmwareesxMatch4.0
OR
vmwareesxMatch4.1
OR
vmwareesxiMatch3.5
OR
vmwareesxiMatch3.51
OR
vmwareesxiMatch4.0
OR
vmwareesxiMatch4.01
OR
vmwareesxiMatch4.02
OR
vmwareesxiMatch4.03
OR
vmwareesxiMatch4.04
OR
vmwareesxiMatch4.1
OR
vmwareesxiMatch4.11
OR
vmwareesxiMatch4.12
OR
vmwareesxiMatch5.0
OR
vmwareesxiMatch5.01
OR
vmwareesxiMatch5.02

Social References

More

7.9 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:N/C:C/I:C/A:C

6.2 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

78.2%