CVE-2011-4127

The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.6 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 7%
VendorProductVersion
linuxlinux_kernel
𝑥
≤ 3.2.1
linuxlinux_kernel
3.0:rc1
linuxlinux_kernel
3.0:rc2
linuxlinux_kernel
3.0:rc3
linuxlinux_kernel
3.0:rc4
linuxlinux_kernel
3.0:rc5
linuxlinux_kernel
3.0:rc6
linuxlinux_kernel
3.0:rc7
linuxlinux_kernel
3.0.1
linuxlinux_kernel
3.0.2
linuxlinux_kernel
3.0.3
linuxlinux_kernel
3.0.4
linuxlinux_kernel
3.0.5
linuxlinux_kernel
3.0.6
linuxlinux_kernel
3.0.7
linuxlinux_kernel
3.0.8
linuxlinux_kernel
3.0.9
linuxlinux_kernel
3.0.10
linuxlinux_kernel
3.0.11
linuxlinux_kernel
3.0.12
linuxlinux_kernel
3.0.13
linuxlinux_kernel
3.0.14
linuxlinux_kernel
3.0.15
linuxlinux_kernel
3.0.16
linuxlinux_kernel
3.0.17
linuxlinux_kernel
3.0.18
linuxlinux_kernel
3.0.19
linuxlinux_kernel
3.0.20
linuxlinux_kernel
3.0.21
linuxlinux_kernel
3.0.22
linuxlinux_kernel
3.0.23
linuxlinux_kernel
3.0.24
linuxlinux_kernel
3.0.25
linuxlinux_kernel
3.0.26
linuxlinux_kernel
3.0.27
linuxlinux_kernel
3.0.28
linuxlinux_kernel
3.0.29
linuxlinux_kernel
3.0.30
linuxlinux_kernel
3.0.31
linuxlinux_kernel
3.0.32
linuxlinux_kernel
3.0.33
linuxlinux_kernel
3.0.34
linuxlinux_kernel
3.1
linuxlinux_kernel
3.1:rc1
linuxlinux_kernel
3.1:rc2
linuxlinux_kernel
3.1:rc3
linuxlinux_kernel
3.1:rc4
linuxlinux_kernel
3.1.1
linuxlinux_kernel
3.1.2
linuxlinux_kernel
3.1.3
linuxlinux_kernel
3.1.4
linuxlinux_kernel
3.1.5
linuxlinux_kernel
3.1.6
linuxlinux_kernel
3.1.7
linuxlinux_kernel
3.1.8
linuxlinux_kernel
3.1.9
linuxlinux_kernel
3.1.10
linuxlinux_kernel
3.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libguestfs
bullseye
1:1.44.0-2
fixed
bookworm
1:1.48.6-2
fixed
sid
1:1.52.2-5
fixed
trixie
1:1.52.2-5
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
not-affected
saucy
not-affected
raring
not-affected
quantal
not-affected
precise
not-affected
oneiric
Fixed 3.0.0-16.29
released
natty
ignored
maverick
ignored
lucid
Fixed 2.6.32-39.86
released
hardy
ignored
linux-armadaxp
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
not-affected
precise
not-affected
oneiric
dne
natty
dne
lucid
dne
hardy
dne
linux-ec2
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
ignored
lucid
Fixed 2.6.32-343.45
released
hardy
dne
linux-flo
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
dne
saucy
dne
quantal
dne
precise
dne
lucid
dne
linux-fsl-imx51
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
hardy
dne
linux-goldfish
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
dne
saucy
ignored
quantal
dne
precise
dne
lucid
dne
linux-grouper
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
ignored
trusty
dne
saucy
ignored
quantal
dne
precise
dne
lucid
dne
linux-lts-backport-maverick
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
dne
lucid
ignored
hardy
dne
linux-lts-backport-natty
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
dne
lucid
ignored
hardy
dne
linux-lts-backport-oneiric
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
dne
lucid
Fixed 3.0.0-16.29~lucid1
released
hardy
dne
linux-lts-quantal
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
not-affected
oneiric
dne
lucid
dne
hardy
dne
linux-lts-raring
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
not-affected
oneiric
dne
lucid
dne
hardy
dne
linux-lts-trusty
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
precise
not-affected
lucid
dne
linux-lts-utopic
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
precise
dne
lucid
dne
linux-lts-vivid
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
precise
dne
lucid
dne
linux-lts-wily
yakkety
dne
xenial
dne
wily
dne
vivid
dne
trusty
dne
precise
dne
linux-lts-xenial
yakkety
dne
xenial
dne
wily
dne
vivid
dne
trusty
not-affected
precise
dne
linux-maguro
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
ignored
quantal
dne
precise
dne
lucid
dne
linux-mako
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
dne
saucy
ignored
quantal
dne
precise
dne
lucid
dne
linux-manta
yakkety
dne
xenial
dne
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
dne
saucy
ignored
quantal
dne
precise
dne
lucid
dne
linux-mvl-dove
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
dne
oneiric
dne
natty
dne
maverick
not-affected
lucid
not-affected
hardy
dne
linux-raspi2
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
dne
trusty
dne
precise
dne
linux-snapdragon
yakkety
not-affected
xenial
not-affected
wily
dne
trusty
dne
precise
dne
linux-ti-omap4
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
not-affected
raring
not-affected
quantal
not-affected
precise
not-affected
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
dne
hardy
dne
Common Weakness Enumeration
References