Permissions, Privileges, and Access Controls in Linux kernel - CVE-2013-4470

 

Permissions, Privileges, and Access Controls in Linux kernel - CVE-2013-4470

Published: November 4, 2013 / Updated: August 10, 2020


Vulnerability identifier: #VU42402
CSH Severity: High
CVSS v4: 8.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2013-4470
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows local users to cause a denial of service (memory corruption and system crash) or possibly gain privileges via a crafted application that uses the UDP_CORK option in a setsockopt system call and sends both short and long packets, related to the ip_ufo_append_data function in net/ipv4/ip_output.c and the ip6_ufo_append_data function in net/ipv6/ip6_output.c.


Affected software

Linux kernel
Amazon Linux AMI

How to mitigate CVE-2013-4470

Install update from vendor's website.


External References

Related Security Bulletins