CVE-2011-3209
The MITRE CVE dictionary describes this issue as:
Find out more about CVE-2011-3209 from the MITRE CVE dictionary dictionary and NIST NVD.
Statement
This issue did not affect the Linux kernels as shipped with Red Hat Enterprise Linux 4, 6, and Red Hat Enterprise MRG, as they either do not have the sample_to_timespec() function, or have already backported upstream commit f8bd2258, which addresses this issue. It was addressed in Red Hat Enterprise Linux 5 via https://rhn.redhat.com/errata/RHSA-2011-1386.html.
CVSS v2 metrics
| Base Score | 4.9 |
|---|---|
| Base Metrics | AV:L/AC:L/Au:N/C:N/I:N/A:C |
| Access Vector | Local |
| Access Complexity | Low |
| Authentication | None |
| Confidentiality Impact | None |
| Integrity Impact | None |
| Availability Impact | Complete |
Find out more about Red Hat support for the Common Vulnerability Scoring System (CVSS).
Red Hat Security Errata
| Platform | Errata | Release Date |
|---|---|---|
| Red Hat Enterprise Linux Long Life (v. 5.3 server) (kernel) | RHSA-2011:1418 | 2011-11-01 |
| Red Hat Enterprise Linux 5 (kernel) | RHSA-2011:1386 | 2011-10-20 |
| Red Hat Enterprise Linux EUS (v. 5.6 server) (kernel) | RHSA-2011:1419 | 2011-11-01 |
Affected Packages State
| Platform | Package | State |
|---|---|---|
| Red Hat Enterprise MRG 2 | realtime-kernel | Not affected |
| Red Hat Enterprise Linux 6 | kernel | Not affected |
| Red Hat Enterprise Linux 4 | kernel | Not affected |
Acknowledgements
Red Hat would like to thank Yasuaki Ishimatsu for reporting this issue.CVE description copyright © 2017, The MITRE Corporation
