Linux Kernel Use-After-Free Privilege Escalation Vulnerability

Linux Kernel Use-After-Free Privilege Escalation Vulnerability

CVE-2013-4343 · MEDIUM Severity

AV:L/AC:M/AU:N/C:C/I:C/A:C

Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.11.1 allows local users to gain privileges by leveraging the CAP_NET_ADMIN capability and providing an invalid tuntap interface name in a TUNSETIFF ioctl call.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.