7.8
CVSSv3

CVE-2012-6689

Published: 02/05/2016 Updated: 20/01/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel prior to 3.5.5 does not validate the dst_pid field, which allows local users to have an unspecified impact by spoofing Netlink messages.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

The system could be made to run actions or potentially programs as an administrator ...
The system could be made to perform privileged actions as an administrator ...