Vulnerability Name: CVE-2011-4081 (CCN-75876) Assigned: 2011-10-20 Published: 2011-10-20 Updated: 2023-02-13 Summary: crypto/ghash-generic.c in the Linux kernel before 3.1 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact by triggering a failed or missing ghash_setkey function call, followed by a (1) ghash_update function call or (2) ghash_final function call, as demonstrated by a write operation on an AF_ALG socket. CVSS v3 Severity: 5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H )Exploitability Metrics: Attack Vector (AV): LocalAttack Complexity (AC): LowPrivileges Required (PR): LowUser Interaction (UI): NoneScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): High
4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L )Exploitability Metrics: Attack Vector (AV): LocalAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): NoneScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Low
CVSS v2 Severity: 4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C )3.7 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): LocalAccess Complexity (AC): LowAuthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
2.1 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P )1.6 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): LocalAccess Complexity (AC): LowAthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Partial
4.9 Medium (REDHAT CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C )3.7 Low (REDHAT Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): LocalAccess Complexity (AC): LowAuthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
Vulnerability Type: CWE-476 Vulnerability Consequences: Denial of Service References: Source: MITRE Type: CNACVE-2011-4081 Source: secalert@redhat.com Type: UNKNOWNsecalert@redhat.com Source: CCN Type: Linux Kernel GIT Repositorycrypto: ghash - Avoid null pointer dereference if no key is set Source: CCN Type: RHSA-2012-0010Important: kernel-rt security and bug fix update Source: CCN Type: RHSA-2012-0350Moderate: kernel security and bug fix update Source: secalert@redhat.com Type: Mailing List, Patch, Vendor Advisorysecalert@redhat.com Source: secalert@redhat.com Type: Mailing List, Patch, Third Party Advisorysecalert@redhat.com Source: CCN Type: OSVDB ID: 76639Linux Kernel NULL Pointer Dereference ghash Algorithm Local DoS Source: CCN Type: Red Hat Bugzilla Bug 749475CVE-2011-4081 kernel: crypto: ghash: null pointer deref if no key is set Source: secalert@redhat.com Type: Issue Tracking, Patch, Third Party Advisorysecalert@redhat.com Source: XF Type: UNKNOWNkernel-ghash-dos(75876) Source: secalert@redhat.com Type: Exploit, Patch, Third Party Advisorysecalert@redhat.com Vulnerable Configuration: Configuration RedHat 1 :cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:* Configuration RedHat 2 :cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:* Configuration RedHat 3 :cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:* Configuration RedHat 4 :cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:* Configuration RedHat 5 :cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:* Configuration CCN 1 :cpe:/o:linux:linux_kernel:2.6.9:rc4:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.9:rc3:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.9:rc2:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.9:rc1:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.8:rc4:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.8:rc3:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.8:rc2:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.8:rc1:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.8.1:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:2.6.9:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc1:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc2:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc3:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc4:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.5:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc7:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc5:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0:rc6:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.7:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.6:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.9:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.8:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.24:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.22:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.23:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.20:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.21:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.18:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.19:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.16:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.17:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.14:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.15:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.12:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.13:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.10:*:*:*:*:*:*:* OR cpe:/o:linux:linux_kernel:3.0.11:*:*:*:*:*:*:* AND cpe:/o:redhat:enterprise_linux:6:*:server:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux:6:*:workstation:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_desktop:6:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:* Denotes that component is vulnerable Oval Definitions BACK
linux linux kernel 2.6.9 rc4
linux linux kernel 2.6.9 rc3
linux linux kernel 2.6.9 rc2
linux linux kernel 2.6.9 rc1
linux linux kernel 2.6.8 rc4
linux linux kernel 2.6.8 rc3
linux linux kernel 2.6.8 rc2
linux linux kernel 2.6.8 rc1
linux linux kernel 2.6.8.1
linux linux kernel 2.6.9
linux linux kernel 3.0 rc1
linux linux kernel 3.0 rc2
linux linux kernel 3.0 rc3
linux linux kernel 3.0 rc4
linux linux kernel 3.0.5
linux linux kernel 3.0 rc7
linux linux kernel 3.0 rc5
linux linux kernel 3.0 rc6
linux linux kernel 3.0.7
linux linux kernel 3.0.6
linux linux kernel 3.0.9
linux linux kernel 3.0.8
linux linux kernel 3.0.24
linux linux kernel 3.0.22
linux linux kernel 3.0.23
linux linux kernel 3.0.20
linux linux kernel 3.0.21
linux linux kernel 3.0.18
linux linux kernel 3.0.19
linux linux kernel 3.0.16
linux linux kernel 3.0.17
linux linux kernel 3.0.14
linux linux kernel 3.0.15
linux linux kernel 3.0.12
linux linux kernel 3.0.13
linux linux kernel 3.0.10
linux linux kernel 3.0.11
redhat enterprise linux 6
redhat enterprise linux 6
redhat enterprise linux desktop 6
redhat enterprise linux hpc node 6
redhat enterprise mrg 2.0