CVE-2013-6432 - CERT CVE
ID CVE-2013-6432
Sažetak The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly interact with read system calls on ping sockets, which allows local users to cause a denial of service (NULL pointer dereference and system crash) by leveraging unspecified privileges to execute a crafted application.
Reference
CVSS
Base: 4.6
Impact: 6.9
Exploitability:3.1
Pristup
VektorSloženostAutentikacija
LOCAL LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE COMPLETE
CVSS vektor AV:L/AC:L/Au:S/C:N/I:N/A:C
Zadnje važnije ažuriranje 13-02-2023 - 04:49
Objavljeno 09-12-2013 - 18:55