The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to access /proc/net/pktgen/pgctrl, and then using the pktgen package in conjunction with a bridge device for a VLAN interface.
2012-05-17T11:00:32.757
2025-04-11T00:51:21.963
Deferred
CVSSv3.1: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:N/A:C
3.9
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.1 | Yes |
Operating System | avaya | 9608_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9608 | - | No |
Operating System | avaya | 9608g_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9608g | - | No |
Operating System | avaya | 9611g_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9611g | - | No |
Operating System | avaya | 9621g_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9621g | - | No |
Operating System | avaya | 9641g_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9641g | - | No |
Operating System | avaya | 9641gs_firmware | ≤ 6.6.0 | Yes |
Hardware | avaya | 9641gs | - | No |