CVE-2011-3347: Medium severity red hat enterprise linux vulnerability

Published Sep 7, 2011
·
Updated

A certain Red Hat patch to the be2net implementation in the kernel package before 2.6.32-218.el6 on Red Hat Enterprise Linux (RHEL) 6, when promiscuous mode is enabled, allows remote attackers to cause a denial of service (system crash) via non-member VLAN packets.

Other sources

When interface is put in promiscuous mode and it receives VLAN packets, but no VLANS are configured on that interface , then the kernel crashes in the 8021q module.

Acknowledgements:

Red Hat would like to thank Somnath Kotur for reporting this issue.

Red Hat

Affected Software

2 affected components
debian/linux-2.6
redhat Enterprise Linux=6.0

Event History

Sep 7, 2011
Data Sourced
via Red Hat·04:36 PM
DescriptionSeverityAffected Software
Jun 8, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·09:58 PM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·10:46 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2011-3347?

CVE-2011-3347 is classified as a high severity vulnerability due to its potential to cause a denial of service.

2

How do I fix CVE-2011-3347?

To fix CVE-2011-3347, upgrade your kernel package to a version that addresses this vulnerability since the patch was implemented in kernel versions after 2.6.32-218.el6.

3

What does CVE-2011-3347 affect?

CVE-2011-3347 affects Red Hat Enterprise Linux 6 operating system, specifically when the be2net implementation is used with promiscuous mode enabled.

4

Can CVE-2011-3347 be exploited remotely?

Yes, CVE-2011-3347 can be exploited remotely by attackers sending non-member VLAN packets in certain conditions.

5

What are the symptoms of CVE-2011-3347 exploitation?

Exploitation of CVE-2011-3347 may lead to a system crash, resulting in a denial of service for users.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203