Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-1883

Опубликовано: 18 сент. 2009
Источник: nvd
CVSS2: 4.4
EPSS Низкий

Описание

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:2.6.9:*:*:*:*:*:*:*

EPSS

Процентиль: 23%
0.00077
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

redhat
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

debian
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Lin ...

github
почти 4 года назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

EPSS

Процентиль: 23%
0.00077
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-264