Lucene search

K
cveRedhatCVE-2011-3619
HistoryJun 08, 2013 - 1:05 p.m.

CVE-2011-3619

2013-06-0813:05:55
CWE-20
redhat
web.nvd.nist.gov
37
cve-2011-3619
linux kernel
apparmor
security
null pointer dereference
oops
denial of service
nvd

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.2

Confidence

High

EPSS

0

Percentile

5.1%

The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 3.0 does not properly handle invalid parameters, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact by writing to a /proc/#####/attr/current file.

Affected configurations

Nvd
Node
linuxlinux_kernelRange3.0rc7
OR
linuxlinux_kernelMatch3.0rc1
OR
linuxlinux_kernelMatch3.0rc2
OR
linuxlinux_kernelMatch3.0rc3
OR
linuxlinux_kernelMatch3.0rc4
OR
linuxlinux_kernelMatch3.0rc5
OR
linuxlinux_kernelMatch3.0rc6
VendorProductVersionCPE
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc2::
linuxlinux_kernelcpe:/o:linux:linux_kernel::rc7::
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc5::
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc3::
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc6::
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc1::
linuxlinux_kernel3.0cpe:/o:linux:linux_kernel:3.0:rc4::

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.2

Confidence

High

EPSS

0

Percentile

5.1%