Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-3520

The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.7%
CVSS Severity
CVSS v2 Score 1.9
References
Products affected by CVE-2012-3520


Contact Us

Shodan ® - All rights reserved