oss-sec mailing list archives
Re: CVE request: kernel: CAP_SYS_MODULE bypass via CAP_NET_ADMIN
From: Eugene Teo <eugene () redhat com>
Date: Fri, 25 Feb 2011 08:14:53 +0800
On 02/25/2011 07:54 AM, Kees Cook wrote:
Hi, While not as bad as CVE-2010-4661 (unprivileged module loading) I'd like to get a CVE assigned for this issue for tracking purposes: https://lkml.org/lkml/2011/2/24/203 Basically "ifconfig $module" will load any module as long as the process has CAP_NET_ADMIN (ignoring CAP_SYS_MODULE).
Please use CVE-2011-1019. Eugene -- Eugene Teo / Red Hat Security Response Team
Current thread:
- CVE request: kernel: CAP_SYS_MODULE bypass via CAP_NET_ADMIN Kees Cook (Feb 24)
- Re: CVE request: kernel: CAP_SYS_MODULE bypass via CAP_NET_ADMIN Eugene Teo (Feb 24)
- Re: CVE request: kernel: CAP_SYS_MODULE bypass via CAP_NET_ADMIN Vasiliy Kulikov (Mar 11)