CVE-2011-3188
kernel: net: improve sequence number generation
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.
Las implementaciones de (1) IPv4 y (2) IPv6 en el kernel de Linux antes de v3.1 utiliza una versión modificada de algoritmo MD4 para generar números de secuencia y valores de los fragmentos de identificación, lo que hace que sea más fácil para los atacantes remotos causar una denegación de servicio (red interrumpida) o secuestrar sesiones de red mediante la predicción de estos valores y el envío de paquetes manipulados.
An updated rhev-hypervisor package that fixes several security issues is now available. The RHBA-2011:1254 update introduced a regression in the Linux kernel's Ethernet bridge implementation. If a system had an interface in a bridge, and an attacker on the local network could send packets to that interface, they could cause a denial of service on that system. A flaw in the Linux kernel could lead to GRO (Generic Receive Offload) fields being left in an inconsistent state. An attacker on the local network could use this flaw to trigger a denial of service. GRO is enabled by default in all network drivers that support it. Various other issues have also been addressed.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-08-19 CVE Reserved
- 2011-09-09 CVE Published
- 2024-08-06 CVE Updated
- 2025-07-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (10)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=139447903326211&w=2 | 2023-02-13 | |
https://access.redhat.com/security/cve/CVE-2011-3188 | 2012-01-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | < 3.1 Search vendor "Linux" for product "Linux Kernel" and version " < 3.1" | - |
Affected
| ||||||
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | 4.0 Search vendor "Redhat" for product "Enterprise Linux" and version "4.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Arx Search vendor "F5" for product "Arx" | >= 6.0.0 <= 6.4.0 Search vendor "F5" for product "Arx" and version " >= 6.0.0 <= 6.4.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | >= 10.1.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 10.1.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Analytics Search vendor "F5" for product "Big-ip Analytics" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Analytics" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Edge Gateway Search vendor "F5" for product "Big-ip Edge Gateway" | >= 10.1.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 10.1.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Edge Gateway Search vendor "F5" for product "Big-ip Edge Gateway" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Global Traffic Manager Search vendor "F5" for product "Big-ip Global Traffic Manager" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Global Traffic Manager Search vendor "F5" for product "Big-ip Global Traffic Manager" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Link Controller" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Link Controller" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Protocol Security Module" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Protocol Security Module" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Wan Optimization Manager Search vendor "F5" for product "Big-ip Wan Optimization Manager" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Wan Optimization Manager" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Wan Optimization Manager Search vendor "F5" for product "Big-ip Wan Optimization Manager" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Wan Optimization Manager" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Webaccelerator Search vendor "F5" for product "Big-ip Webaccelerator" | >= 10.0.0 <= 10.2.4 Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 10.0.0 <= 10.2.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Webaccelerator Search vendor "F5" for product "Big-ip Webaccelerator" | >= 11.0.0 <= 11.1.0 Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 11.0.0 <= 11.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Enterprise Manager Search vendor "F5" for product "Enterprise Manager" | >= 2.1.0 <= 2.3.0 Search vendor "F5" for product "Enterprise Manager" and version " >= 2.1.0 <= 2.3.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Enterprise Manager Search vendor "F5" for product "Enterprise Manager" | 3.0.0 Search vendor "F5" for product "Enterprise Manager" and version "3.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Firepass Search vendor "F5" for product "Firepass" | >= 6.0.0 <= 6.1.0 Search vendor "F5" for product "Firepass" and version " >= 6.0.0 <= 6.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Firepass Search vendor "F5" for product "Firepass" | 7.0.0 Search vendor "F5" for product "Firepass" and version "7.0.0" | - |
Affected
|