4.9
CVSSv2

CVE-2003-0856

Published: 15/12/2003 Updated: 11/10/2017
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

iproute 2.4.7 and previous versions allows local users to cause a denial of service via spoofed messages as other users to the kernel netlink interface.

Vulnerable Product Search on Vulmon Subscribe to Product

stephen hemminger iproute

Vendor Advisories

Herbert Xu reported that local users could cause a denial of service against iproute, a set of tools for controlling networking in Linux kernels iproute uses the netlink interface to communicate with the kernel, but failed to verify that the messages it received came from the kernel (rather than from other user processes) For the current stable d ...