CVE-2011-4127

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4.6
MEDIUM
Affected
1
PROJECT

Description

The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.

Linux kernel source tree
GitHubGitHub
237K