Back

HIGH

kernel: missing capability checks in sbni_ioctl()

Published Sep 3, 2008

Description

The sbni_ioctl function in drivers/net/wan/sbni.c in the wan subsystem in the Linux kernel 2.6.26.3 does not check for the CAP_NET_ADMIN capability before processing a (1) SIOCDEVRESINSTATS, (2) SIOCDEVSHWSTATE, (3) SIOCDEVENSLAVE, or (4) SIOCDEVEMANSIPATE ioctl request, which allows local users to bypass intended capability restrictions.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (37)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Sep 3, 2008
Updated Aug 7, 2024
Reserved Aug 7, 2008
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Aug 27, 2008