Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cgmv-c2qg-xxqx

Опубликовано: 09 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT address allows it to be mapped in userland. A call gate can then be written to escalate to CPL 0.

ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT address allows it to be mapped in userland. A call gate can then be written to escalate to CPL 0.

EPSS

Процентиль: 15%
0.00047
Низкий

8.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.8
nvd
больше 3 лет назад

ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT address allows it to be mapped in userland. A call gate can then be written to escalate to CPL 0.

EPSS

Процентиль: 15%
0.00047
Низкий

8.8 High

CVSS3

Дефекты

CWE-269