CVE-2011-1022
published 2011-03-22CVE-2011-1022: The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1…
PriorityP47low2.1CVSS 2.0
AVLACLAuNCNIPAN
EPSS
0.39%
31.3th percentile
The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 does not verify that netlink messages originated in the kernel, which allows local users to bypass intended resource restrictions via a crafted message.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| balbir_singh | libcgroup | <= 0.37 | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| balbir_singh | libcgroup | — | — |
| debian | libcgroup | < libcgroup 0.37.1-1 (bookworm) | libcgroup 0.37.1-1 (bookworm) |
| libcgroup_project | libcgroup | >= 0 < 0.37.1-1 | 0.37.1-1 |
| libcgroup_project | libcgroup | >= 0 < 0.37.1-1 | 0.37.1-1 |
| libcgroup_project | libcgroup | >= 0 < 0.37.1-1 | 0.37.1-1 |
| libcgroup_project | libcgroup | >= 0 < 0.37.1-1 | 0.37.1-1 |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
osv2.1LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
libcgroup: Uncheck origin of NETLINK messages
vendor_redhat·2011-02-18·CVSS 2.1
CVE-2011-1022 [LOW] libcgroup: Uncheck origin of NETLINK messages
libcgroup: Uncheck origin of NETLINK messages
The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 does not verify that netlink messages originated in the kernel, which allows local users to bypass intended resource restrictions via a crafted message.
Debian
CVE-2011-1022: libcgroup - The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in ...
vendor_debian·2011·CVSS 2.1
CVE-2011-1022 [LOW] CVE-2011-1022: libcgroup - The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in ...
The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 does not verify that netlink messages originated in the kernel, which allows local users to bypass intended resource restrictions via a crafted message.
Scope: local
bookworm: resolved (fixed in 0.37.1-1)
bullseye: resolved (fixed in 0.37.1-1)
forky: resolved (fixed in 0.37.1-1)
sid: resolved (fixed in 0.37.1-1)
trixie: resolved (fixed in 0.37.1-1)
GHSA
GHSA-669f-5h8c-h58m: The cgre_receive_netlink_msg function in daemon/cgrulesengd
ghsa_unreviewed·2022-05-17
CVE-2011-1022 [LOW] GHSA-669f-5h8c-h58m: The cgre_receive_netlink_msg function in daemon/cgrulesengd
The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 does not verify that netlink messages originated in the kernel, which allows local users to bypass intended resource restrictions via a crafted message.
OSV
CVE-2011-1022: The cgre_receive_netlink_msg function in daemon/cgrulesengd
osv·2011-03-22·CVSS 2.1
CVE-2011-1022 [LOW] CVE-2011-1022: The cgre_receive_netlink_msg function in daemon/cgrulesengd
The cgre_receive_netlink_msg function in daemon/cgrulesengd.c in cgrulesengd in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 does not verify that netlink messages originated in the kernel, which allows local users to bypass intended resource restrictions via a crafted message.
No detection rules found.
Bugzilla
CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages [fedora-all]
bugzilla·2011-02-25·CVSS 2.1
CVE-2011-1022 [LOW] CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages [fedora-all]
CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=680409
Please note: this issue affects multiple s
Bugzilla
CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages
bugzilla·2011-02-25·CVSS 2.1
CVE-2011-1022 [LOW] CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages
CVE-2011-1022 libcgroup: Uncheck origin of NETLINK messages
It was discovered that libcgroup did not properly check
the origin of Netlink messages. A local attacker could
use this flaw to send crafted Netlink messages to the
cgrulesengd daemon, causing it to put processes into one
or more existing control groups, based on the attacker's
choosing, possibly allowing the particular tasks to run
with more resources (memory, CPU, etc.) than originally
intended.
References:
[1] http://sourceforge.net/mailarchive/message.php?msg_id=27102603
CVE Request:
[2] http://www.openwall.com/lists/oss-security/2011/02/25/6
CVE Assignment:
[3] http://www.openwall.com/lists/oss-security/2011/02/25/9
Discussion:
This issue affects the version of the libcgroup package, as shipped
with Red Hat Enterprise
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=615987http://lists.fedoraproject.org/pipermail/package-announce/2011-March/056683.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-March/056734.htmlhttp://lists.opensuse.org/opensuse-updates/2011-04/msg00027.htmlhttp://openwall.com/lists/oss-security/2011/02/25/11http://openwall.com/lists/oss-security/2011/02/25/12http://openwall.com/lists/oss-security/2011/02/25/14http://openwall.com/lists/oss-security/2011/02/25/6http://openwall.com/lists/oss-security/2011/02/25/9http://secunia.com/advisories/43611http://secunia.com/advisories/43758http://secunia.com/advisories/43891http://secunia.com/advisories/44093http://sourceforge.net/mailarchive/message.php?msg_id=26598749http://sourceforge.net/mailarchive/message.php?msg_id=27102603http://sourceforge.net/projects/libcg/files/libcgroup/v0.37.1/libcgroup-0.37.1.tar.bz2/downloadhttp://www.debian.org/security/2011/dsa-2193http://www.redhat.com/support/errata/RHSA-2011-0320.htmlhttp://www.securityfocus.com/bid/46578http://www.securitytracker.com/id?1025157http://www.vupen.com/english/advisories/2011/0679http://www.vupen.com/english/advisories/2011/0774https://bugzilla.redhat.com/show_bug.cgi?id=680409http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=615987http://lists.fedoraproject.org/pipermail/package-announce/2011-March/056683.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-March/056734.htmlhttp://lists.opensuse.org/opensuse-updates/2011-04/msg00027.htmlhttp://openwall.com/lists/oss-security/2011/02/25/11http://openwall.com/lists/oss-security/2011/02/25/12http://openwall.com/lists/oss-security/2011/02/25/14http://openwall.com/lists/oss-security/2011/02/25/6http://openwall.com/lists/oss-security/2011/02/25/9http://secunia.com/advisories/43611http://secunia.com/advisories/43758http://secunia.com/advisories/43891http://secunia.com/advisories/44093http://sourceforge.net/mailarchive/message.php?msg_id=26598749http://sourceforge.net/mailarchive/message.php?msg_id=27102603http://sourceforge.net/projects/libcg/files/libcgroup/v0.37.1/libcgroup-0.37.1.tar.bz2/downloadhttp://www.debian.org/security/2011/dsa-2193http://www.redhat.com/support/errata/RHSA-2011-0320.htmlhttp://www.securityfocus.com/bid/46578http://www.securitytracker.com/id?1025157http://www.vupen.com/english/advisories/2011/0679http://www.vupen.com/english/advisories/2011/0774https://bugzilla.redhat.com/show_bug.cgi?id=680409
2011-03-22
Published