CVE-2013-3302
published 2013-04-29CVE-2013-3302: Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL…
PriorityP413medium4.4CVSS 2.0
AVLACMAuNCPIPAP
EPSS
0.26%
17.9th percentile
Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors involving a reconnection event.
Affected
179 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 3.8-1 (bookworm) | linux 3.8-1 (bookworm) |
| linux | linux_kernel | <= 3.7.1 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv4.4MEDIUM
vendor_debian4.4MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2013-3302: linux - Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux...
vendor_debian·2013·CVSS 4.4
CVE-2013-3302 [MEDIUM] CVE-2013-3302: linux - Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux...
Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors involving a reconnection event.
Scope: local
bookworm: resolved (fixed in 3.8-1)
bullseye: resolved (fixed in 3.8-1)
forky: resolved (fixed in 3.8-1)
sid: resolved (fixed in 3.8-1)
trixie: resolved (fixed in 3.8-1)
Red Hat
Kernel: cifs: NULL pointer dereference
vendor_redhat·2012-12-27·CVSS 4.4
CVE-2013-3302 [MEDIUM] CWE-476 Kernel: cifs: NULL pointer dereference
Kernel: cifs: NULL pointer dereference
Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors involving a reconnection event.
Statement: This issue does not affect the versions of the kernel package as shipped with
Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) - Not affected
GHSA
GHSA-9cp7-qvc2-m7rh: Race condition in the smb_send_rqst function in fs/cifs/transport
ghsa_unreviewed·2022-05-17
CVE-2013-3302 [MEDIUM] CWE-362 GHSA-9cp7-qvc2-m7rh: Race condition in the smb_send_rqst function in fs/cifs/transport
Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors involving a reconnection event.
OSV
CVE-2013-3302: Race condition in the smb_send_rqst function in fs/cifs/transport
osv·2013-04-29·CVSS 4.4
CVE-2013-3302 [MEDIUM] CVE-2013-3302: Race condition in the smb_send_rqst function in fs/cifs/transport
Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors involving a reconnection event.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ea702b80e0bbb2448e201472127288beb82ca2fehttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.7.2http://www.openwall.com/lists/oss-security/2013/04/15/2http://www.securityfocus.com/bid/59064https://bugzilla.redhat.com/show_bug.cgi?id=952260https://github.com/torvalds/linux/commit/ea702b80e0bbb2448e201472127288beb82ca2fehttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ea702b80e0bbb2448e201472127288beb82ca2fehttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.7.2http://www.openwall.com/lists/oss-security/2013/04/15/2http://www.securityfocus.com/bid/59064https://bugzilla.redhat.com/show_bug.cgi?id=952260https://github.com/torvalds/linux/commit/ea702b80e0bbb2448e201472127288beb82ca2fe
2013-04-29
Published