CVE-2014-3145
Published at:
-
11-05-2014 11:55
Last modified:
-
21-09-2022 08:44
Total changes:
-
2
Description
Common Vulnerability Scoring System (CVSS)
Low
Attack complexity
Local
Attack vector
High
Availability
None
Confidentiality
None
Integrity
-
Privileges required
-
Scope
-
User interaction
4.9
Base score
3.9
6.9
Exploitability score
Impact score
Verification logic
Reference
- https://github.com/torvalds/linux/commit/05ab8f2647e4221cbdb3856dd7d32bd5407316b3
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=05ab8f2647e4221cbdb3856dd7d32bd5407316b3
- [oss-security] 20140509 Re: CVE request Linux kernel: filter: prevent nla extensions to peek beyond the end of the message-Mailing List, Patch, Third Party Advisory
- 58990-Broken Link
- 67321-Third Party Advisory, VDB Entry
- 59597-Broken Link
- 60613-Not Applicable
- 59311-Not Applicable
- http://linux.oracle.com/errata/ELSA-2014-3052.html
- https://source.android.com/security/bulletin/2017-04-01
- 1038201-Third Party Advisory, VDB Entry
- USN-2264-1-Third Party Advisory
- USN-2263-1-Third Party Advisory
- USN-2262-1-Third Party Advisory
- USN-2261-1-Third Party Advisory
- USN-2259-1-Third Party Advisory
- USN-2252-1-Third Party Advisory
- USN-2251-1-Third Party Advisory
- DSA-2949-Third Party Advisory
Keywords