VYPR
Unrated severityNVD Advisory· Published Mar 15, 2011· Updated Apr 29, 2026

CVE-2011-0001

CVE-2011-0001

Description

Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.

Affected products

15
  • Zaal/Tgt15 versions
    cpe:2.3:a:zaal:tgt:*:*:*:*:*:*:*:*+ 14 more
    • cpe:2.3:a:zaal:tgt:*:*:*:*:*:*:*:*range: <=1.0.13
    • cpe:2.3:a:zaal:tgt:0.9.5:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.6:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.7:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.8:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.9:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.10:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.11:*:*:*:*:*:*:*
    • cpe:2.3:a:zaal:tgt:1.0.12:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

12

News mentions

0

No linked articles in our index yet.