Security Advisory

CVE-2013-4588

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-11-19 15:00:00
Last updated 2024-08-06 16:45:15
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Multiple stack-based buffer overflows in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 2.6.33, when CONFIG_IP_VS is used, allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability for (1) a getsockopt system call, related to the do_ip_vs_get_ctl function, or (2) a setsockopt system call, related to the do_ip_vs_set_ctl function.