CVE-2014-2672

Impact:
Moderate
Public Date:
2014-02-20
Bugzilla:
1083246: CVE-2014-2672 kernel: ath9k: tid->sched race in ath_tx_aggr_sleep()
It was found that a remote attacker could use a race condition flaw in the ath_tx_aggr_sleep() function to crash the system by creating large network traffic on the system's Atheros 9k wireless network adapter.

Find out more about CVE-2014-2672 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

This issued does not affect Red Hat Enterprise Linux 5 because we do not provide support for Atheros 9k wireless network adapters.

CVSS v2 metrics

Base Score 5.4
Base Metrics AV:N/AC:H/Au:N/C:N/I:N/A:C
Access Vector Network
Access Complexity High
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete

Find out more about Red Hat support for the Common Vulnerability Scoring System (CVSS).

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 7 (kernel) RHSA-2014:1023 2014-08-06
Red Hat Enterprise Linux 6 (kernel) RHSA-2014:0981 2014-07-29
MRG Grid for RHEL 6 Server v.2 (kernel-rt) RHSA-2014:0557 2014-05-27
Red Hat Enterprise Linux Extended Update Support 6.4 (kernel) RHSA-2014:1101 2014-08-27

Affected Packages State

Platform Package State
Red Hat Enterprise MRG 2 realtime-kernel Affected
Red Hat Enterprise Linux 5 kernel Not affected

Mitigation

Last Modified