The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel before 3.5.5 does not validate the dst_pid field, which allows local users to have an unspecified impact by spoofing Netlink messages.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2016-05-02 10:59
Updated : 2025-04-12 10:46
NVD link : CVE-2012-6689
Mitre link : CVE-2012-6689
CVE.ORG link : CVE-2012-6689
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-284
Improper Access Control