UBUNTU-CVE-2012-2313
Dashboard / Vulnerabilities / UBUNTU-CVE-2012-2313
UBUNTU-CVE-2012-2313
Summary:
Details: The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
References: https://ubuntu.com/security/CVE-2012-2313, http://www.openwall.com/lists/oss-security/2012/05/04/1, https://ubuntu.com/security/notices/USN-1471-1, https://ubuntu.com/security/notices/USN-1472-1, https://ubuntu.com/security/notices/USN-1473-1, https://ubuntu.com/security/notices/USN-1474-1, https://ubuntu.com/security/notices/USN-1476-1, https://ubuntu.com/security/notices/USN-1488-1, https://ubuntu.com/security/notices/USN-1490-1, https://ubuntu.com/security/notices/USN-1491-1, https://ubuntu.com/security/notices/USN-1492-1, https://ubuntu.com/security/notices/USN-1493-1, https://ubuntu.com/security/notices/USN-1530-1, https://www.cve.org/CVERecord?id=CVE-2012-2313
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
