CVE-2014-7284
published 2014-10-13CVE-2014-7284: The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the…
PriorityP431medium6.4CVSS 2.0
AVNACLAuNCNIPAP
EPSS
3.75%
88.8th percentile
The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP port numbers, and IP ID values.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 3.16.2-1 (bookworm) | linux 3.16.2-1 (bookworm) |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 3.16.2-1 | 3.16.2-1 |
| linux | linux_kernel | >= 0 < 3.16.2-1 | 3.16.2-1 |
| linux | linux_kernel | >= 0 < 3.16.2-1 | 3.16.2-1 |
| linux | linux_kernel | >= 0 < 3.16.2-1 | 3.16.2-1 |
| linux | linux_kernel | >= 0 < 3.13.0-32.57 | 3.13.0-32.57 |
CVSS provenance
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
osv6.4MEDIUM
vendor_debian6.4MEDIUM
vendor_redhat6.4MEDIUM
vendor_ubuntu2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qghr-qj2v-qq89: The net_get_random_once implementation in net/core/utils
ghsa_unreviewed·2022-05-17
CVE-2014-7284 [MEDIUM] CWE-200 GHSA-qghr-qj2v-qq89: The net_get_random_once implementation in net/core/utils
The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP port numbers, and IP ID values.
OSV
CVE-2014-7284: The net_get_random_once implementation in net/core/utils
osv·2014-10-13·CVSS 6.4
CVE-2014-7284 [MEDIUM] CVE-2014-7284: The net_get_random_once implementation in net/core/utils
The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP port numbers, and IP ID values.
OSV
linux vulnerabilities
osv·2014-07-17·CVSS 2.1
CVE-2014-4943 [LOW] linux vulnerabilities
linux vulnerabilities
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter subsystem
of the Linux kernel. A local user could exploit this flaw to ca
Red Hat
kernel: randomness degradation due to bug in net_get_random_once()
vendor_redhat·2014-10-01·CVSS 6.4
CVE-2014-7284 [MEDIUM] CWE-456 kernel: randomness degradation due to bug in net_get_random_once()
kernel: randomness degradation due to bug in net_get_random_once()
The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP port numbers, and IP ID values.
Statement: Not vulnerable.
This issue does not affect the Linux kernel packages as shipped with Red Hat
Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the
Debian
CVE-2014-7284: linux - The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3...
vendor_debian·2014·CVSS 6.4
CVE-2014-7284 [MEDIUM] CVE-2014-7284: linux - The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3...
The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP port numbers, and IP ID values.
Scope: local
bookworm: resolved (fixed in 3.16.2-1)
bullseye: resolved (fixed in 3.16.2-1)
forky: resolved (fixed in 3.16.2-1)
sid: resolved (fixed in 3.16.2-1)
trixie: resolved (fixed in 3.16.2-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-7284 kernel: randomness degradation due to bug in net_get_random_once()
bugzilla·2014-10-02·CVSS 6.4
CVE-2014-7284 [MEDIUM] CVE-2014-7284 kernel: randomness degradation due to bug in net_get_random_once()
CVE-2014-7284 kernel: randomness degradation due to bug in net_get_random_once()
It was found that on certain system slow path in __net_get_random_once() was
never taken, which lead to insufficient initialization of various seed values,
among others affecting randomness of IP IDs, TCP sequence numbers, and ephemeral
port numbers.
Upstream fix:
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=3d4405226d27b3a215e4d03cfa51f536244e5de7
Discussion:
Statement:
Not vulnerable.
This issue does not affect the Linux kernel packages as shipped with Red Hat
Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG 2.
---
Current fedora19 kernel is 3.14.19-100.fc19, which appears
potentially affected by this bug. None of the linux-stable
trees appear to contain that commit.
Bugzilla
CVE-2013-7284 perl-PlRPC: pre-auth remote code execution
bugzilla·2014-01-09·CVSS 6.8
CVE-2013-7284 [MEDIUM] CVE-2013-7284 perl-PlRPC: pre-auth remote code execution
CVE-2013-7284 perl-PlRPC: pre-auth remote code execution
PlRPC is a Perl module that implements IDL-free RPCs. It is intended for cross-domain applications, but it fails to achieve that goal because it uses Storable, which is known to be insecure when deserializing (thawing) untrusted data. User name and password are transmitted using Storable, so code execution can happen before authentication.
The patches that exist just document the issues and are not real fixes.
References:
http://seclists.org/oss-sec/2014/q1/56
https://rt.cpan.org/Public/Bug/Display.html?id=90474
Commit/Patch:
http://pkgs.fedoraproject.org/cgit/perl-PlRPC.git/commit/?id=b9497b8d780a54ff5be6661c5f24d70135e0bb79
Discussion:
Created perl-PlRPC tracking bugs for this issue:
Affects: fedora-all [bug 1051110]
---
T
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3d4405226d27b3a215e4d03cfa51f536244e5de7http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.5http://www.openwall.com/lists/oss-security/2014/10/01/19https://bugzilla.redhat.com/show_bug.cgi?id=1148788https://github.com/torvalds/linux/commit/3d4405226d27b3a215e4d03cfa51f536244e5de7https://web.archive.org/web/20141002163852/http://secondlookforensics.com/ngro-linux-kernel-bug/http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3d4405226d27b3a215e4d03cfa51f536244e5de7http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.5http://www.openwall.com/lists/oss-security/2014/10/01/19https://bugzilla.redhat.com/show_bug.cgi?id=1148788https://github.com/torvalds/linux/commit/3d4405226d27b3a215e4d03cfa51f536244e5de7https://web.archive.org/web/20141002163852/http://secondlookforensics.com/ngro-linux-kernel-bug/
2014-10-13
Published