7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
6.9 Medium
AI Score
Confidence
High
0.005 Low
EPSS
Percentile
76.7%
It was discovered that CIFS incorrectly handled authentication. When a user
had a CIFS share mounted that required authentication, a local user could
mount the same share without knowing the correct password. (CVE-2011-1585)
It was discovered that the GRE protocol incorrectly handled netns
initialization. A remote attacker could send a packet while the ip_gre
module was loading, and crash the system, leading to a denial of service.
(CVE-2011-1767)
It was discovered that the IP/IP protocol incorrectly handled netns
initialization. A remote attacker could send a packet while the ipip module
was loading, and crash the system, leading to a denial of service.
(CVE-2011-1768)
Vasily Averin discovered that the NFS Lock Manager (NLM) incorrectly
handled unlock requests. A local attacker could exploit this to cause a
denial of service. (CVE-2011-2491)
Robert Swiecki discovered that mapping extensions were incorrectly handled.
A local attacker could exploit this to crash the system, leading to a
denial of service. (CVE-2011-2496)
Ben Pfaff discovered that Classless Queuing Disciplines (qdiscs) were being
incorrectly handled. A local attacker could exploit this to crash the
system, leading to a denial of service. (CVE-2011-2525)
Yasuaki Ishimatsu discovered a flaw in the kernel’s clock implementation. A
local unprivileged attacker could exploit this causing a denial of service.
(CVE-2011-3209)
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 8.04 | noarch | linux-image-2.6.24-30-virtual | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | acpi-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | block-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | crypto-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | fat-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | fb-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | firewire-core-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | floppy-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | fs-core-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
Ubuntu | 8.04 | noarch | fs-secondary-modules-2.6.24-30-generic-di | < 2.6.24-30.96 | UNKNOWN |
7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
6.9 Medium
AI Score
Confidence
High
0.005 Low
EPSS
Percentile
76.7%