Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-0787

Опубликовано: 25 мар. 2009
Источник: nvd
CVSS2: 4.9
EPSS Низкий

Описание

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows local users to obtain portions of kernel memory.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:linux:linux_kernel:2.6.28:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.4:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.5:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.6:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.7:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.28.8:*:*:*:*:*:*:*

EPSS

Процентиль: 24%
0.00076
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
около 16 лет назад

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows local users to obtain portions of kernel memory.

redhat
около 16 лет назад

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows local users to obtain portions of kernel memory.

debian
около 16 лет назад

The ecryptfs_write_metadata_to_contents function in the eCryptfs funct ...

github
около 3 лет назад

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows local users to obtain portions of kernel memory.

oracle-oval
около 16 лет назад

ELSA-2009-0473: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 24%
0.00076
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-189