CVE-2011-1495 describes a critical vulnerability in the Linux kernel's mpt2sas driver (versions 2.6.38 and earlier). This flaw stems from insufficient validation of length and offset values during memory copy operations within the _ctl_do_mpt_command and _ctl_diag_read_buffer functions. A local attacker could exploit this via a crafted ioctl call to achieve privilege escalation, cause a denial of service through memory corruption, or extract sensitive kernel memory information. With a CVSS score of 7.2 (High), this vulnerability presents a significant risk due to its local attack vector and low attack complexity, allowing for complete confidentiality, integrity, and availability impacts. Despite its severity, there is no evidence of active exploitation in the wild, and no public exploit code is available on platforms like Metasploit or ExploitDB. Community discussion is minimal, with only one mention indicating limited public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.6.38CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
2.6.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:* | ||
2.6.1CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.1:*:*:*:*:*:*:* | ||
2.6.1CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:* | ||
2.6.1CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.