kernel: netfilter: ebtables: enforce CAP_NET_ADMIN
Published Jan 19, 2010
2.1
LOWCVSS 2.0
EPSS 0.40%
Description
net/bridge/netfilter/ebtables.c in the ebtables module in the netfilter framework in the Linux kernel before 2.6.33-rc4 does not require the CAP_NET_ADMIN capability for setting or modifying rules, which allows local users to bypass intended access restrictions and configure arbitrary network-traffic filtering via a modified ebtables application.
Affected products
No data.
- ≤ 2.6.33
- 2.6.0
- 2.6.1
- 2.6.2
- 2.6.3
- 2.6.4
- 2.6.5
- 2.6.6
- 2.6.7
- 2.6.8
- 2.6.8.1
- 2.6.9
- 2.6.10
- 2.6.11
- 2.6.11.1
- 2.6.11.2
- 2.6.11.3
- 2.6.11.4
- 2.6.11.5
- 2.6.11.6
- 2.6.11.7
- 2.6.11.8
- 2.6.11.9
- 2.6.11.10
- 2.6.11.11
- 2.6.11.12
- 2.6.12
- 2.6.12.1
- 2.6.12.2
- 2.6.12.3
- 2.6.12.4
- 2.6.12.5
- 2.6.12.6
- 2.6.13
- 2.6.13.1
- 2.6.13.2
- 2.6.13.3
- 2.6.13.4
- 2.6.13.5
- 2.6.14
- 2.6.14.1
- 2.6.14.3
- 2.6.14.4
- 2.6.14.5
- 2.6.14.6
- 2.6.14.7
- 2.6.15
- 2.6.15.1
- 2.6.15.2
- 2.6.15.3
- 2.6.15.4
- 2.6.15.5
- 2.6.15.6
- 2.6.15.7
- 2.6.16
- 2.6.16.1
- 2.6.16.2
- 2.6.16.3
- 2.6.16.4
- 2.6.16.5
- 2.6.16.6
- 2.6.16.7
- 2.6.16.8
- 2.6.16.9
- 2.6.16.10
- 2.6.16.11
- 2.6.16.12
- 2.6.16.13
- 2.6.16.14
- 2.6.16.15
- 2.6.16.16
- 2.6.16.17
- 2.6.16.18
- 2.6.16.19
- 2.6.16.20
- 2.6.16.21
- 2.6.16.22
- 2.6.16.23
- 2.6.16.24
- 2.6.16.25
- 2.6.16.26
- 2.6.16.27
- 2.6.16.28
- 2.6.16.29
- 2.6.16.30
- 2.6.16.31
- 2.6.17
- 2.6.17.1
- 2.6.17.2
- 2.6.17.3
- 2.6.17.4
- 2.6.17.5
- 2.6.17.6
- 2.6.17.7
- 2.6.17.8
- 2.6.17.9
- 2.6.17.10
- 2.6.17.11
- 2.6.17.12
- 2.6.17.13
- 2.6.17.14
- 2.6.18.1
- 2.6.18.2
- 2.6.18.3
- 2.6.18.4
- 2.6.18.5
- 2.6.18.6
- 2.6.18.7
- 2.6.18.8
- 2.6.22
- 2.6.22.2
- 2.6.22.3
- 2.6.22.4
- 2.6.22.5
- 2.6.22.6
- 2.6.22.7
- 2.6.23
- 2.6.23
- 2.6.23
- 2.6.23.1
- 2.6.23.2
- 2.6.23.3
- 2.6.23.4
- 2.6.23.5
- 2.6.23.6
- 2.6.23.7
- 2.6.24
- 2.6.24
- 2.6.24
- 2.6.24
- 2.6.24
- 2.6.32
- 2.6.32.1
- 2.6.32.2
- 2.6.32.3
- 2.6.32.4
- 2.6.33
- 2.6.33
No data.
MRG for RHEL-5
kernel-rt-0:2.6.24.7-149.el5rt
Fixed · RHSA-2010:0161
Red Hat Enterprise Linux 4
kernel-0:2.6.9-89.0.23.EL
Fixed · RHSA-2010:0146
Red Hat Enterprise Linux 5
kernel-0:2.6.18-164.15.1.el5
Fixed · RHSA-2010:0147
| Product | Package | State | Advisory |
|---|---|---|---|
| MRG for RHEL-5 | kernel-rt-0:2.6.24.7-149.el5rt | Fixed | RHSA-2010:0161 |
| Red Hat Enterprise Linux 4 | kernel-0:2.6.9-89.0.23.EL | Fixed | RHSA-2010:0146 |
| Red Hat Enterprise Linux 5 | kernel-0:2.6.18-164.15.1.el5 | Fixed | RHSA-2010:0147 |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue did not affect the version of Linux kernel as shipped with Red Hat Enterprise Linux 3, as it did not include support for ebtables.
References (34)
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=dce766af541f6605fa9889892c0280bab31c66ab x_refsource_CONFIRM
- http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html vendor-advisoryx_refsource_FEDORA
- http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00008.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00002.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00007.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/38133 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/38296 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/38333 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/38492 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/38779 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/39033 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43315 third-party-advisoryx_refsource_SECUNIA
- http://www.debian.org/security/2010/dsa-1996 vendor-advisoryx_refsource_DEBIAN
- http://www.debian.org/security/2010/dsa-2005 vendor-advisoryx_refsource_DEBIAN
- http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.33-rc4 x_refsource_CONFIRM
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:051 vendor-advisoryx_refsource_MANDRIVA
- http://www.openwall.com/lists/oss-security/2010/01/14/1 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2010/01/14/3 mailing-listx_refsource_MLIST
- http://www.redhat.com/support/errata/RHSA-2010-0147.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2010-0161.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/516397/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/37762 vdb-entryx_refsource_BID
- http://www.vmware.com/security/advisories/VMSA-2011-0003.html x_refsource_CONFIRM
- http://www.vupen.com/english/advisories/2010/0109 vdb-entryx_refsource_VUPENPatchVendor Advisory
- https://access.redhat.com/security/cve/CVE-2010-0007 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=555238 x_refsource_CONFIRMIssue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-0039 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/55602 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2010-0007
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9630 vdb-entrysignaturex_refsource_OVAL
- https://rhn.redhat.com/errata/RHSA-2010-0146.html vendor-advisoryx_refsource_REDHAT
- https://www.cve.org/CVERecord?id=CVE-2010-0007
Change history (0)
No recorded changes yet.