Back

LOW

kernel: net: permissions flaw in /proc/sys/net

Published Dec 9, 2013

Description

The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid and gid values, which allows local users to bypass intended /proc/sys/net restrictions via a crafted application.

Affected products

Remediation

Red Hat statement

This issue does not affect the version of the kernel package as shipped with Red Hat Enterprise Linux 5 and 6.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Dec 9, 2013
Updated Aug 6, 2024
Reserved Jun 12, 2013
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Oct 6, 2013