Lucene search

K
cve[email protected]CVE-2011-1746
HistoryMay 09, 2011 - 7:55 p.m.

CVE-2011-1746

2011-05-0919:55:03
CWE-189
web.nvd.nist.gov
77
3
cve-2011-1746
integer overflows
buffer overflows
denial of service
linux kernel
nvd

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.2%

Multiple integer overflows in the (1) agp_allocate_memory and (2) agp_create_user_memory functions in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 allow local users to trigger buffer overflows, and consequently cause a denial of service (system crash) or possibly have unspecified other impact, via vectors related to calls that specify a large number of memory pages.

Affected configurations

NVD
Node
linuxlinux_kernelRange<2.6.38.5
Node
redhatenterprise_linuxMatch5.0
OR
redhatenterprise_linux_ausMatch5.6
OR
redhatenterprise_linux_desktopMatch5.0
OR
redhatenterprise_linux_eusMatch5.6
OR
redhatenterprise_linux_serverMatch5.0
OR
redhatenterprise_linux_workstationMatch5.0

Social References

More

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.2%