VULNERABILITY INTELLIGENCE
CVE-2011-1019
CVSS score1.9 LOW
EPSS probability0.44%
CISA KEVNot currently listed
Published2013-03-01
Last modified2026-06-16
CVSS vectorAV:L/AC:M/Au:N/C:N/I:P/A:N
Description
The dev_load function in net/core/dev.c in the Linux kernel before 2.6.38 allows local users to bypass an intended CAP_SYS_MODULE capability requirement and load arbitrary modules by leveraging the CAP_NET_ADMIN capability.
Primary references
- secalert@redhat.com — Broken Link
- secalert@redhat.com
- secalert@redhat.com — Mailing List, Third Party Advisory
- secalert@redhat.com — Issue Tracking, Patch, Third Party Advisory
- secalert@redhat.com — Exploit, Patch, Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Broken Link
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108 — Mailing List, Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Issue Tracking, Patch, Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Exploit, Patch, Third Party Advisory