MEDIUM · 4.4

CVE-2011-3603

The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which causes the radvd daemon to run as root and has an unspecified impact.

Vulnerability Description

The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which causes the radvd daemon to run as root and has an unspecified impact.

CVSS Score

4.4

MEDIUM

AV:L/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
LitechRouter Advertisement Daemon<= 1.8.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2011-3603?

CVE-2011-3603 is a vulnerability with a CVSS score of 4.4 (MEDIUM). The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which causes the radvd daemon to run as root and has an unspecified impact.

How severe is CVE-2011-3603?

CVE-2011-3603 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-3603?

Check the references section above for vendor advisories and patch information. Affected products include: Litech Router Advertisement Daemon.