Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
BID:50312
Info
Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
| Bugtraq ID: | 50312 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2011-3347 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 20 2011 12:00AM |
| Updated: | Apr 13 2015 09:50PM |
| Credit: | Somnath Kotur |
| Vulnerable: |
Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Red Hat Enterprise Virtualization Hypervisor for RHEL 5 0 Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server EUS 6.1.z Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux 5 Server Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Oracle Enterprise Linux 5 OpenVZ Project OpenVZ 2.6.32-feoktistov.1 OpenVZ Project OpenVZ 2.6.32 OpenVZ Project OpenVZ 042stab044.17 OpenVZ Project OpenVZ 042stab039.10 OpenVZ Project OpenVZ 042stab037.1 OpenVZ Project OpenVZ 028stab092.2 OpenVZ Project OpenVZ 028stab091.1 OpenVZ Project OpenVZ 028stab089.1 OpenVZ Project OpenVZ 028stab085.2 OpenVZ Project OpenVZ 028stab081.1 OpenVZ Project OpenVZ 023stab054.1 OpenVZ Project OpenVZ 023stab053.2 Avaya Aura Experience Portal 6.0 |
| Not Vulnerable: |
OpenVZ Project OpenVZ 042stab049.6 OpenVZ Project OpenVZ 028stab095.1 |
Discussion
Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
The Red Hat Linux kernel is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause the kernel to crash, denying service to legitimate users.
The Red Hat Linux kernel is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause the kernel to crash, denying service to legitimate users.
Exploit / POC
Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
Attackers can use readily available network utilities to exploit this issue.
Attackers can use readily available network utilities to exploit this issue.
Solution / Fix
Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Red Hat Linux Kernel CVE-2011-3347 VLAN Packets Handling Remote Denial of Service Vulnerability
References:
References:
- Download/kernel/rhel5/028stab095.1 (OpenVZ)
- Download/kernel/rhel6/042stab049.6 (OpenVZ Project)
- Red Hat Homepage (Red Hat)
- ASA-2011-405 Red Hat Enterprise Linux 6 kernel security, bug fix and enhancement (Avaya)
- kernel security, bug fix, and enhancement update (Somnath Kotur)