Lucene search

K
cve[email protected]CVE-2011-1023
HistoryJun 21, 2012 - 11:55 p.m.

CVE-2011-1023

2012-06-2123:55:01
web.nvd.nist.gov
41
7
cve-2011-1023
linux kernel
rds subsystem
denial of service
vulnerability
nvd

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The Reliable Datagram Sockets (RDS) subsystem in the Linux kernel before 2.6.38 does not properly handle congestion map updates, which allows local users to cause a denial of service (BUG_ON and system crash) via vectors involving (1) a loopback (aka loop) transmit operation or (2) an InfiniBand (aka ib) transmit operation.

Affected configurations

NVD
Node
linuxlinux_kernelRange2.6.37.6
OR
linuxlinux_kernelMatch2.6.37
OR
linuxlinux_kernelMatch2.6.37rc1
OR
linuxlinux_kernelMatch2.6.37rc2
OR
linuxlinux_kernelMatch2.6.37rc3
OR
linuxlinux_kernelMatch2.6.37rc4
OR
linuxlinux_kernelMatch2.6.37rc5
OR
linuxlinux_kernelMatch2.6.37.1
OR
linuxlinux_kernelMatch2.6.37.2
OR
linuxlinux_kernelMatch2.6.37.3
OR
linuxlinux_kernelMatch2.6.37.4
OR
linuxlinux_kernelMatch2.6.37.5

Social References

More

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%