CVE-2013-4299
published 2013-10-24CVE-2013-4299: Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information…
PriorityP430medium6CVSS 2.0
AVNACMAuSCPIPAP
EPSS
3.81%
88.8th percentile
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
Affected
235 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 3.11.6-2 (bookworm) | linux 3.11.6-2 (bookworm) |
| linux | linux_kernel | <= 3.11.6 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.06.0MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
osv6.0MEDIUM
vendor_debian6.0MEDIUM
vendor_redhat6.0MEDIUM
vendor_ubuntu6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2014-01-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
Multiple integer overflow flaws were discovered in the Alchemy LCD frame-
buffer drivers in the Linux kernel. An unprivileged local user could
exploit this flaw to gain administrative privileges. (CVE-2013-4511)
Nico Golde and Fabian Yamaguchi reported
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-01-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
Multiple integer overflow flaws were discovered in the Alchemy LCD frame-
buffer drivers in the Linux kernel. An unprivileged local user could
exploit this flaw to gain administrative privileges. (CVE-2013-4511)
Nico Golde and Fabian Yamaguchi reported a flaw i
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2013-12-07·CVSS 3.2
CVE-2013-0343 [LOW] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
An information leak was discovered in the handling of ICMPv6 Router
Advertisement (RA) messages in the Linux kernel's IPv6 network stack. A
remote attacker could exploit this flaw to cause a denial of service
(excessive retries and address-generation outage), and consequently obtain
sensitive information. (CVE-2013-0343)
Dan Carpenter discovered an information leak in the HP Smart Array and
Compaq SMART2 disk-array driver in the Linux kernel. A local user could
exploit this flaw to obtain sensitive information from kernel memory.
(CVE-2013-2147)
Kees Cook discovered flaw in the Human Interface Device (HID) subsystem of
the Linux kernel. A physically proximate attacker could exploit th
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-12-07·CVSS 3.6
CVE-2013-4270 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Miroslav Vadkerti discovered a flaw in how the permissions for network
sysctls are handled in the Linux kernel. An unprivileged local user could
exploit this flaw to have privileged access to files in /proc/sys/net/.
(CVE-2013-4270)
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Wannes Rombouts reported a vulnerability in the networking tuntap interface
of the Linux kernel. A local user with the CAP_NET_ADMIN capability could
leverage this flaw to gain full admin privileges. (CVE-2013-4343)
Alan Chester reported a flaw in the IPv6 Stream Control Trans
Ubuntu
Linux kernel (Quantal HWE) vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel (Quantal HWE) vulnerabilities
Title: Linux kernel (Quantal HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
An information leak was discovered in the Linux kernel's SIOCWANDEV ioctl
call. A local user with the CAP_NET_ADMIN capability could exploit this
flaw to obtain potentially sensitive information from kernel memory.
(CVE-2014-1444)
An information l
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
rei
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall a
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Alan Chester reported a flaw in the IPv6 Stream Control Transmission
Protocol (SCTP) of the Linux kernel. A remote attacker could exploit this
flaw to obtain sensitive information by sniffing network traffic.
(CVE-2013-4350)
Dmitry Vyukov reported a flaw in the Linux kernel's handling of IPv6 UDP
Fragmentation Offload (UFO) processing. A remote attacker could leverage
this flaw to cause a denial of service (system crash). (CVE-2013-4387)
A flaw was discovered in the Linux kernel's fib6 error-code encoding
Ubuntu
Linux kernel (Saucy HWE) vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel (Saucy HWE) vulnerabilities
Title: Linux kernel (Saucy HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP
Fragmentation Offload (UFO). An unprivileged local user could exploit this
flaw to cause a denial of service (system crash) or possibly gain
administrative privileges. (CVE-2013-4470)
Evan Huus reported a buffer overflow in the Linux kernel's radiotap header
parsing. A remote attacker could cause a denial of service (buffer over-
read) via a specially crafted header. (CVE-2013-7027)
An information leak was discovered in the Linux
Ubuntu
Linux kernel (Raring HWE) vulnerabilities
vendor_ubuntu·2013-12-03·CVSS 6.0
CVE-2013-4299 [MEDIUM] Linux kernel (Raring HWE) vulnerabilities
Title: Linux kernel (Raring HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's dm snapshot facility. A remote
authenticated user could exploit this flaw to obtain sensitive information
or modify/corrupt data. (CVE-2013-4299)
Alan Chester reported a flaw in the IPv6 Stream Control Transmission
Protocol (SCTP) of the Linux kernel. A remote attacker could exploit this
flaw to obtain sensitive information by sniffing network traffic.
(CVE-2013-4350)
Dmitry Vyukov reported a flaw in the Linux kernel's handling of IPv6 UDP
Fragmentation Offload (UFO) processing. A remote attacker could leverage
this flaw to cause a denial of service (system crash). (CVE-2013-4387)
A flaw was discovered in the Linux kernel's fib6 error-
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-11-08·CVSS 2.1
CVE-2013-2147 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Dan Carpenter discovered an information leak in the HP Smart Array and
Compaq SMART2 disk-array driver in the Linux kernel. A local user could
exploit this flaw to obtain sensitive information from kernel memory.
(CVE-2013-2147)
Kees Cook discovered flaw in the Human Interface Device (HID) subsystem
when CONFIG_HID_ZEROPLUS is enabled. A physically proximate attacker could
leverage this flaw to cause a denial of service via a specially crafted
device. (CVE-2013-2889)
Kees Cook discovered another flaw in the Human Interface Device (HID)
subsystem of the Linux kernel when any of CONFIG_LOGITECH_FF,
CONFIG_LOGIG940_FF, or CONFIG_LOGIWHEELS_FF are enabled. A physcially
proximate attacker can leve
Ubuntu
Linux kernel (EC2) vulnerabilities
vendor_ubuntu·2013-11-08·CVSS 2.1
CVE-2013-2147 [LOW] Linux kernel (EC2) vulnerabilities
Title: Linux kernel (EC2) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Dan Carpenter discovered an information leak in the HP Smart Array and
Compaq SMART2 disk-array driver in the Linux kernel. A local user could
exploit this flaw to obtain sensitive information from kernel memory.
(CVE-2013-2147)
Kees Cook discovered flaw in the Human Interface Device (HID) subsystem
when CONFIG_HID_ZEROPLUS is enabled. A physically proximate attacker could
leverage this flaw to cause a denial of service via a specially crafted
device. (CVE-2013-2889)
Kees Cook discovered another flaw in the Human Interface Device (HID)
subsystem of the Linux kernel when any of CONFIG_LOGITECH_FF,
CONFIG_LOGIG940_FF, or CONFIG_LOGIWHEELS_FF are enabled. A physcially
proximate attacker ca
Red Hat
kernel: dm: dm-snapshot data leak
vendor_redhat·2013-10-16·CVSS 6.0
CVE-2013-4299 [MEDIUM] kernel: dm: dm-snapshot data leak
kernel: dm: dm-snapshot data leak
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux Extended Update Support 5.9) - Affected
Debian
CVE-2013-4299: linux - Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel t...
vendor_debian·2013·CVSS 6.0
CVE-2013-4299 [MEDIUM] CVE-2013-4299: linux - Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel t...
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
Scope: local
bookworm: resolved (fixed in 3.11.6-2)
bullseye: resolved (fixed in 3.11.6-2)
forky: resolved (fixed in 3.11.6-2)
sid: resolved (fixed in 3.11.6-2)
trixie: resolved (fixed in 3.11.6-2)
GHSA
GHSA-rw3x-fqfm-qr37: Interpretation conflict in drivers/md/dm-snap-persistent
ghsa_unreviewed·2022-05-14
CVE-2013-4299 [MEDIUM] CWE-200 GHSA-rw3x-fqfm-qr37: Interpretation conflict in drivers/md/dm-snap-persistent
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
OSV
CVE-2013-4299: Interpretation conflict in drivers/md/dm-snap-persistent
osv·2013-10-24·CVSS 6.0
CVE-2013-4299 [MEDIUM] CVE-2013-4299: Interpretation conflict in drivers/md/dm-snap-persistent
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
Kernel
dm snapshot: fix data corruption
kernel_security·2013-10-16·CVSS 6.0
CVE-2013-4299 [MEDIUM] dm snapshot: fix data corruption
dm snapshot: fix data corruption
This patch fixes a particular type of data corruption that has been
encountered when loading a snapshot's metadata from disk.
When we allocate a new chunk in persistent_prepare, we increment
ps->next_free and we make sure that it doesn't point to a metadata area
by further incrementing it if necessary.
When we load metadata from disk on device activation, ps->next_free is
positioned after the last used data chunk. However, if this last used
data chunk is followed by a metadata area, ps->next_free is positioned
erroneously to the metadata area. A newly-allocated chunk is placed at
the same location as the metadata area, resulting in data or metadata
corruption.
This patch changes the code so that ps->next_free skips the metadata
area when metadata are lo
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=e9c6a182649f4259db704ae15a91ac820e63b0cahttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00020.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1436.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1449.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1450.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1460.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1490.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1519.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1520.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1783.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1860.htmlhttp://www.ubuntu.com/usn/USN-2015-1http://www.ubuntu.com/usn/USN-2016-1http://www.ubuntu.com/usn/USN-2040-1http://www.ubuntu.com/usn/USN-2041-1http://www.ubuntu.com/usn/USN-2042-1http://www.ubuntu.com/usn/USN-2043-1http://www.ubuntu.com/usn/USN-2044-1http://www.ubuntu.com/usn/USN-2045-1http://www.ubuntu.com/usn/USN-2046-1http://www.ubuntu.com/usn/USN-2049-1http://www.ubuntu.com/usn/USN-2050-1http://www.ubuntu.com/usn/USN-2066-1http://www.ubuntu.com/usn/USN-2067-1https://bugzilla.redhat.com/show_bug.cgi?id=1004233https://github.com/torvalds/linux/commit/e9c6a182649f4259db704ae15a91ac820e63b0cahttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=e9c6a182649f4259db704ae15a91ac820e63b0cahttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00020.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1436.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1449.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1450.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1460.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1490.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1519.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1520.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1783.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1860.htmlhttp://www.ubuntu.com/usn/USN-2015-1http://www.ubuntu.com/usn/USN-2016-1http://www.ubuntu.com/usn/USN-2040-1http://www.ubuntu.com/usn/USN-2041-1http://www.ubuntu.com/usn/USN-2042-1http://www.ubuntu.com/usn/USN-2043-1http://www.ubuntu.com/usn/USN-2044-1http://www.ubuntu.com/usn/USN-2045-1http://www.ubuntu.com/usn/USN-2046-1http://www.ubuntu.com/usn/USN-2049-1http://www.ubuntu.com/usn/USN-2050-1http://www.ubuntu.com/usn/USN-2066-1http://www.ubuntu.com/usn/USN-2067-1https://bugzilla.redhat.com/show_bug.cgi?id=1004233https://github.com/torvalds/linux/commit/e9c6a182649f4259db704ae15a91ac820e63b0ca
2013-10-24
Published