Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qfq8-33vr-83jg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.

EPSS

Процентиль: 33%
0.00125
Низкий

Связанные уязвимости

ubuntu
около 13 лет назад

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.

redhat
почти 14 лет назад

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.

nvd
около 13 лет назад

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.

debian
около 13 лет назад

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly r ...

oracle-oval
почти 14 лет назад

ELSA-2011-1212: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 33%
0.00125
Низкий