Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2011-3359

24
FAUCET Score

CVE-2011-3359 describes a denial-of-service vulnerability in the Linux kernel, specifically affecting versions before 2.6.39. The flaw resides in the b43 wireless driver's dma_rx function, which improperly allocates receive buffers. This allows remote attackers to trigger a system crash by sending a specially crafted wireless frame. The vulnerability carries a CVSS v3.1 score of 7.5 (High), indicating a high-impact denial of service with low attack complexity and no user interaction required. While the potential for a system crash is significant, there is no evidence of active exploitation, public exploit code, or community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
< 2.6.39CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
3.23%
Probability of exploitation in next 30 days
EPSS Percentile
86.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.0323 is in the 77th percentile among its peer group of 51,485 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (4)

github_advisorypatch availablevia nvd_reference
View patch
redhatpatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel-0:2.6.32-131.21.1.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: kernel-rt-0:2.6.33.9-rt31.79.el6rt
View patch

Vendor Advisories (1)

redhatCVE-2011-3359Moderate

kernel: b43: allocate receive buffers big enough for max frame len + offset

Mar 27, 2011

References

ftp.osuosl.org / pub/linux/kernel/v2.6/ChangeLog-2.6.39
Broken Link
git.kernel.org
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
github.com / torvalds/linux/commit/c85ce65ecac078ab1a1835c87c4a6319cf74660a
ExploitPatchThird Party Advisory
openwall.com / lists/oss-security/2011/09/14/2
Mailing ListPatchThird Party Advisory