CVE-2011-1576

The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, as used in Red Hat Enterprise Virtualization (RHEV) Hypervisor and other products, allows remote attackers to cause a denial of service via crafted VLAN packets that are processed by the napi_reuse_skb function, leading to (1) a memory leak or (2) memory corruption, a different vulnerability than CVE-2011-1478.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:linux:linux_kernel:2.6.18:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:redhat:enterprise_virtualization_hypervisor:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*

History

13 Feb 2023, 01:19

Type Values Removed Values Added
Summary CVE-2011-1576 kernel: net: Fix memory leak/corruption on VLAN GRO_DROP The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, as used in Red Hat Enterprise Virtualization (RHEV) Hypervisor and other products, allows remote attackers to cause a denial of service via crafted VLAN packets that are processed by the napi_reuse_skb function, leading to (1) a memory leak or (2) memory corruption, a different vulnerability than CVE-2011-1478.
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2011:1253', 'name': 'https://access.redhat.com/errata/RHSA-2011:1253', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2011:0927', 'name': 'https://access.redhat.com/errata/RHSA-2011:0927', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2011:1090', 'name': 'https://access.redhat.com/errata/RHSA-2011:1090', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/security/cve/CVE-2011-1576', 'name': 'https://access.redhat.com/security/cve/CVE-2011-1576', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2011:1189', 'name': 'https://access.redhat.com/errata/RHSA-2011:1189', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2011:1106', 'name': 'https://access.redhat.com/errata/RHSA-2011:1106', 'tags': [], 'refsource': 'MISC'}

02 Feb 2023, 15:15

Type Values Removed Values Added
References
  • (MISC) https://access.redhat.com/errata/RHSA-2011:1253 -
  • (MISC) https://access.redhat.com/errata/RHSA-2011:0927 -
  • (MISC) https://access.redhat.com/errata/RHSA-2011:1090 -
  • (MISC) https://access.redhat.com/security/cve/CVE-2011-1576 -
  • (MISC) https://access.redhat.com/errata/RHSA-2011:1189 -
  • (MISC) https://access.redhat.com/errata/RHSA-2011:1106 -
Summary The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, as used in Red Hat Enterprise Virtualization (RHEV) Hypervisor and other products, allows remote attackers to cause a denial of service via crafted VLAN packets that are processed by the napi_reuse_skb function, leading to (1) a memory leak or (2) memory corruption, a different vulnerability than CVE-2011-1478. CVE-2011-1576 kernel: net: Fix memory leak/corruption on VLAN GRO_DROP

Information

Published : 2011-08-31 23:55

Updated : 2023-12-10 11:03


NVD link : CVE-2011-1576

Mitre link : CVE-2011-1576

CVE.ORG link : CVE-2011-1576


JSON object : View

Products Affected

redhat

  • enterprise_linux
  • enterprise_virtualization_hypervisor

linux

  • linux_kernel
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer