The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure differences between an l2tp socket and an inet socket.
2014-07-19T19:55:08.230
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.9 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.2.62 | Yes |
Operating System | linux | linux_kernel | < 3.4.102 | Yes |
Operating System | linux | linux_kernel | < 3.10.52 | Yes |
Operating System | linux | linux_kernel | < 3.12.27 | Yes |
Operating System | linux | linux_kernel | < 3.14.16 | Yes |
Operating System | linux | linux_kernel | < 3.15.9 | Yes |
Operating System | opensuse | opensuse | 11.4 | Yes |
Operating System | suse | linux_enterprise_desktop | 11 | Yes |
Operating System | suse | linux_enterprise_server | 11 | Yes |
Operating System | suse | linux_enterprise_server | 11 | Yes |
Operating System | suse | linux_enterprise_server | 11 | Yes |
Operating System | redhat | enterprise_linux_server_aus | 6.2 | Yes |
Operating System | debian | debian_linux | 7.0 | Yes |