« Volver al listado

CVE-2011-0001

Estado: ModificadaMedia (5)—

Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2011-0001",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "secalert@redhat.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2011-03-15T17:55:02.420",
  "references": [
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00005.html",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://lists.wpkg.org/pipermail/stgt/2011-March/004473.html",
      "tags": [
        "Patch"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://secunia.com/advisories/43706",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://secunia.com/advisories/43713",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.debian.org/security/2011/dsa-2209",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2011-0332.html",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.securityfocus.com/bid/46817",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.securitytracker.com/id?1025184",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2011/0636",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://bugzilla.redhat.com/attachment.cgi?id=473779&action=diff",
      "tags": [
        "Patch"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=667261",
      "tags": [
        "Patch"
      ],
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66010",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00005.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://lists.wpkg.org/pipermail/stgt/2011-March/004473.html",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/43706",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/43713",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.debian.org/security/2011/dsa-2209",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2011-0332.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/46817",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securitytracker.com/id?1025184",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2011/0636",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://bugzilla.redhat.com/attachment.cgi?id=473779&action=diff",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=667261",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66010",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-399"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login.  NOTE: some of these details are obtained from third party information."
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad de doble liberación (\"double free\") en la función iscsi_rx_handler (usr/iscsi/iscsid.c) del demonio tgt (tgtd) de Linux SCSI target framework (tgt) en versiones anteriores a la 1.0.14 (también conocido como scsi-target-utils). Permite a atacantes remotos provocar una denegación de servicio (corrupción de memoria y caída de la aplicación)  y posiblemente ejecutar código arbitrario a través de vectores desconocidos. Relacionada con un desbordamiento de buffer durante el login iscsi.  NOTA: algunos de estos detalles han sido obtenidos de terceras partes."
    }
  ],
  "lastModified": "2026-06-16T23:26:35.760",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:zaal:tgt:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AE2CD1CB-FA56-4BB9-854B-1F4544B2FAAA",
              "versionEndIncluding": "1.0.13"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:0.9.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9432FC9D-F4C3-489F-8F40-ACFE3F2F913E"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "10650430-4013-4932-9B0D-548B335AB776"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "95C41F32-2D11-4577-9AB3-3E8FF703164A"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FCB267C5-AD43-4E4C-8639-4B3A69AADC99"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8DACB776-1C50-458F-A062-21271A039EF9"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "52C89B83-9C97-494F-961D-226C5808AD16"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F3A7BD30-31B0-406B-82F1-7ABF7FC7417A"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.6:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D12A0689-5787-4793-B977-EAFD39291977"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.7:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BDC07568-4F74-4743-9B58-726591E69F94"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.8:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "46298888-78C0-420E-9DE2-EADEEC77231E"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.9:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CB2D6724-8BFA-47A5-A5E7-1351881A8FD1"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "81CA1846-471C-48EA-BAF7-AD9776D1C082"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.11:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0998D255-CBAF-4FF7-86F9-F29A0FF8D4D8"
            },
            {
              "criteria": "cpe:2.3:a:zaal:tgt:1.0.12:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3FA09011-7359-4020-85AD-8C363DFADBF9"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "secalert@redhat.com"
}