CVE-2011-4339

N/A Unknown
Published: December 15, 2011 Modified: April 29, 2026
View on NVD

Description

ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux, Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID file, which allows local users to kill arbitrary processes by writing to this file.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://openwall.com/lists/oss-security/2011/12/13/1
Source: secalert@redhat.com
Mailing List Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2013-0123.html
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/47173
Source: secalert@redhat.com
Broken Link
http://secunia.com/advisories/47228
Source: secalert@redhat.com
Broken Link
http://secunia.com/advisories/47376
Source: secalert@redhat.com
Broken Link
http://www.debian.org/security/2011/dsa-2376
Source: secalert@redhat.com
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2011-1814.html
Source: secalert@redhat.com
Third Party Advisory
http://www.securityfocus.com/bid/51036
Source: secalert@redhat.com
Third Party Advisory VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=742837
Source: secalert@redhat.com
Issue Tracking Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/71763
Source: secalert@redhat.com
Third Party Advisory VDB Entry
http://lists.fedoraproject.org/pipermail/package-announce/2012-January/071575.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-January/071580.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://openwall.com/lists/oss-security/2011/12/13/1
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2013-0123.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/47173
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://secunia.com/advisories/47228
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://secunia.com/advisories/47376
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://www.debian.org/security/2011/dsa-2376
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2011:196
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2011-1814.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.securityfocus.com/bid/51036
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=742837
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/71763
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry

30 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.4%
35th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

ipmitool_project redhat