Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9645

Опубликовано: 12 мар. 2017
Источник: debian
EPSS Низкий

Описание

The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
busyboxfixed1:1.22.0-15package
busyboxno-dsawheezypackage
busyboxno-dsasqueezepackage

Примечания

  • https://bugs.busybox.net/show_bug.cgi?id=7652

  • http://git.busybox.net/busybox/commit/?id=4e314faa0aecb66717418e9a47a4451aec59262b

EPSS

Процентиль: 59%
0.00375
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 9 лет назад

The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command.

redhat
около 11 лет назад

The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command.

CVSS3: 5.5
nvd
почти 9 лет назад

The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command.

suse-cvrf
больше 10 лет назад

Security update for busybox

CVSS3: 5.5
github
больше 3 лет назад

The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command.

EPSS

Процентиль: 59%
0.00375
Низкий