Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-3732

Опубликовано: 07 нояб. 2019
Источник: nvd
CVSS3: 5.5
CVSS2: 1.9
EPSS Низкий

Описание

In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc calls a C function without ensuring that the segments are set properly. The kernel's %fs needs to be restored before the call in TRACE_IRQS_ON and before enabling interrupts, so that "current" references work. Without this, "current" used in the window between iret_exc and the middle of error_code where %fs is reset, would crash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия от 2.6.0 (включая) до 2.6.23 (исключая)

EPSS

Процентиль: 38%
0.00164
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 6 лет назад

In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc calls a C function without ensuring that the segments are set properly. The kernel's %fs needs to be restored before the call in TRACE_IRQS_ON and before enabling interrupts, so that "current" references work. Without this, "current" used in the window between iret_exc and the middle of error_code where %fs is reset, would crash.

CVSS3: 5.5
debian
около 6 лет назад

In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc cal ...

github
больше 3 лет назад

In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc calls a C function without ensuring that the segments are set properly. The kernel's %fs needs to be restored before the call in TRACE_IRQS_ON and before enabling interrupts, so that "current" references work. Without this, "current" used in the window between iret_exc and the middle of error_code where %fs is reset, would crash.

EPSS

Процентиль: 38%
0.00164
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

NVD-CWE-Other