CVE-2010-0007
Published: 19 January 2010
net/bridge/netfilter/ebtables.c in the ebtables module in the netfilter framework in the Linux kernel before 2.6.33-rc4 does not require the CAP_NET_ADMIN capability for setting or modifying rules, which allows local users to bypass intended access restrictions and configure arbitrary network-traffic filtering via a modified ebtables application.
Priority
Status
Package | Release | Status |
---|---|---|
linux Launchpad, Ubuntu, Debian |
dapper |
Does not exist
|
hardy |
Released
(2.6.24-27.65)
|
|
intrepid |
Released
(2.6.27-17.45)
|
|
jaunty |
Released
(2.6.28-18.59)
|
|
karmic |
Released
(2.6.31-19.56)
|
|
upstream |
Released
(2.6.33~rc4)
|
|
Patches: upstream: http://git.kernel.org/linus/dce766af541f6605fa9889892c0280bab31c66ab |
||
linux-source-2.6.15 Launchpad, Ubuntu, Debian |
dapper |
Released
(2.6.15-55.82)
|
hardy |
Does not exist
|
|
intrepid |
Does not exist
|
|
jaunty |
Does not exist
|
|
karmic |
Does not exist
|
|
upstream |
Released
(2.6.33~rc4)
|