The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel before 3.5.5 does not validate the dst_pid field, which allows local users to have an unspecified impact by spoofing Netlink messages.
References
Configurations
Information
Published : 2016-05-02 10:59
Updated : 2016-11-28 19:08
NVD link : CVE-2012-6689
Mitre link : CVE-2012-6689
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-284
Improper Access Control
