CVE-2011-3603

Description

From CVE.org

The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which causes the radvd daemon to run as root and has an unspecified impact.

Statement

A failure in privsep_init() does not cause radvd to run with full root privileges when invoked with the --username option specifying an unprivileged user. Rather it will run as a single process as the specified (unprivileged) radvd user, causing this issue to have no security impact (no unintended privilege elevation).

Common Vulnerability Scoring System (CVSS) Score Details

Info alert:Important note

CVSS scores for open source components depend on vendor-specific factors (e.g. version or build chain). Therefore, Red Hat's score and impact rating can be different from NVD and other vendors. Red Hat remains the authoritative CVE Naming Authority (CNA) source for its products and services (see Red Hat classifications).

The following CVSS metrics and score provided are preliminary and subject to review.

CVSS v2 Score Breakdown

Red HatNVDcve.org
Base Score4.44.4N/A
Attack VectorLocalLocalN/A
Access ComplexityMediumMediumN/A
AuthenticationNoneNoneN/A
Confidentiality ImpactPartialPartialN/A
Integrity ImpactPartialPartialN/A
Availability ImpactPartialPartialN/A

Vector

Red Hat: AV:L/AC:M/Au:N/C:P/I:P/A:P

NVD: AV:L/AC:M/Au:N/C:P/I:P/A:P

Acknowledgements

Red Hat would like to thank Vasiliy Kulikov (Openwall) for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.