CVE-2014-4943

CVSS v2.0 6.9 (Medium)
69% Progress
EPSS 0.04 % (0th)
0.04% Progress
Affected Products 6
Advisories 49

The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure differences between an l2tp socket and an inet socket.

Weaknesses
CWE-269
Improper Privilege Management
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2014-07-19 19:55:08
(10 years ago)
Updated Date
2024-01-19 17:50:47
(8 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 2.6.23 version and prior 3.2.62 version cpe:2.3:o:linux:linux_kernel >= 2.6.23 < 3.2.62
  Linux Kernel from 3.3 version and prior 3.4.102 version cpe:2.3:o:linux:linux_kernel >= 3.3 < 3.4.102
  Linux Kernel from 3.5 version and prior 3.10.52 version cpe:2.3:o:linux:linux_kernel >= 3.5 < 3.10.52
  Linux Kernel from 3.11 version and prior 3.12.27 version cpe:2.3:o:linux:linux_kernel >= 3.11 < 3.12.27
  Linux Kernel from 3.13 version and prior 3.14.16 version cpe:2.3:o:linux:linux_kernel >= 3.13 < 3.14.16
  Linux Kernel from 3.15 version and prior 3.15.9 version cpe:2.3:o:linux:linux_kernel >= 3.15 < 3.15.9

Configuration #2

    CPE23 From Up To
  Opensuse 11.4 cpe:2.3:o:opensuse:opensuse:11.4
  Suse Linux Enterprise Desktop 11 SP3 cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3
  Suse Linux Enterprise Server 11 SP2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:ltss
  Suse Linux Enterprise Server 11 SP3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
  Suse Linux Enterprise Server 11 SP3 for Vmware cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:vmware

Configuration #3

    CPE23 From Up To
  Redhat Enterprise Linux Server Aus 6.2 cpe:2.3:o:redhat:enterprise_linux_server_aus:6.2

Configuration #4

    CPE23 From Up To
  Debian Linux 7.0 cpe:2.3:o:debian:debian_linux:7.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...