Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-2119
HistoryApr 19, 2012 - 12:00 a.m.

CVE-2012-2119

2012-04-1900:00:00
ubuntu.com
ubuntu.com
13

CVSS2

5.2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:N/I:N/A:C

EPSS

0.002

Percentile

59.3%

Buffer overflow in the macvtap device driver in the Linux kernel before
3.4.5, when running in certain configurations, allows privileged KVM guest
users to cause a denial of service (crash) via a long descriptor with a
long vector length.

Bugs

Notes

Author Note
apw email thread discussing the patch does not conclude on a patch as yet nothing obviously matching it has hit mainline yet a second patch set was pushed under the thread below and appears to be making its way into v3.5 http://www.spinics.net/lists/netdev/msg197132.html Patch set seems to have hit ending at the sha1 below, it is possible we need all four patches: b92946e2919134ebe2a4083e4302236295ea2a73
OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchlinux-armadaxp< 3.2.0-1606.9UNKNOWN

CVSS2

5.2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:N/I:N/A:C

EPSS

0.002

Percentile

59.3%