Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4573

Опубликовано: 24 сент. 2007
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain privileges by triggering an out-of-bounds access to the system call table using the %RAX register.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:x86_64:*:*:*:*:*
Версия до 2.4.35 (включая)
cpe:2.3:o:linux:linux_kernel:*:*:x86_64:*:*:*:*:*
Версия до 2.6.22.6 (включая)

EPSS

Процентиль: 38%
0.00162
Низкий

7.2 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 17 лет назад

The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain privileges by triggering an out-of-bounds access to the system call table using the %RAX register.

redhat
больше 17 лет назад

The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain privileges by triggering an out-of-bounds access to the system call table using the %RAX register.

debian
больше 17 лет назад

The IA32 system call emulation functionality in Linux kernel 2.4.x and ...

github
около 3 лет назад

The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain privileges by triggering an out-of-bounds access to the system call table using the %RAX register.

oracle-oval
больше 17 лет назад

ELSA-2007-0936: Important: kernel security update (IMPORTANT)

EPSS

Процентиль: 38%
0.00162
Низкий

7.2 High

CVSS2

Дефекты

CWE-264