CVE-2012-6701: Integer Overflow
Published Mar 3, 2016
·Updated
Integer overflow in fs/aio.c in the Linux kernel before 3.4.1 allows local users to cause a denial of service or possibly have unspecified other impact via a large AIO iovec.
Affected Software
5 affected componentsFixes available
redhat/kernel<3.5
3.5
Linux Linux kernel<3.0.33
Linux Linux kernel>=3.1<3.2.19
Linux Linux kernel>=3.3<3.3.8
Linux Linux kernel>=3.4<3.4.1
Event History
May 2, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6701?
CVE-2012-6701 has a moderate severity level as it can lead to denial of service and potentially other impacts.
2
How do I fix CVE-2012-6701?
To fix CVE-2012-6701, upgrade the Linux kernel to version 3.5 or later.
3
What versions are affected by CVE-2012-6701?
CVE-2012-6701 affects Linux kernel versions prior to 3.4.1.
4
Who can exploit CVE-2012-6701?
Local users can exploit CVE-2012-6701 to cause denial of service.
5
What type of vulnerability is CVE-2012-6701?
CVE-2012-6701 is an integer overflow vulnerability.