CVE-2011-3593Kernel vulnerability

CWE-39912 documents5 sources
Severity
5.7MEDIUMNVD
EPSS
0.3%
top 44.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 8
Latest updateMay 14

Description

A certain Red Hat patch to the vlan_hwaccel_do_receive function in net/8021q/vlan_core.c in the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows remote attackers to cause a denial of service (system crash) via priority-tagged VLAN frames.

CVSS vector

AV:A/AC:M/C:N/I:N/A:CExploitability: 5.5 | Impact: 6.9

Affected Packages1 packages

NVDlinux/linux_kernel2.6.32

Also affects: Enterprise Linux 6.0

🔴Vulnerability Details

1
GHSA
GHSA-fj97-rp5f-jf94: A certain Red Hat patch to the vlan_hwaccel_do_receive function in net/8021q/vlan_core2022-05-14

📋Vendor Advisories

8
Red Hat
kernel: vlan: fix panic when handling priority tagged frames2011-11-15
Ubuntu
Linux kernel vulnerabilities2011-11-08
Ubuntu
Linux kernel (EC2) vulnerabilities2011-10-25
Ubuntu
Linux kernel (i.MX51) vulnerabilities2011-10-25
Ubuntu
Linux kernel (Marvell DOVE) vulnerabilities2011-10-25

💬Community

2
Bugzilla
CVE-2011-3593 kernel: vlan: fix panic when handling priority tagged frames [fedora-all]2012-01-18
Bugzilla
CVE-2011-3593 kernel: vlan: fix panic when handling priority tagged frames2011-10-03