Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-3917

Опубликовано: 05 июн. 2014
Источник: nvd
CVSS2: 3.3
EPSS Низкий

Описание

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:suse:linux_enterprise_desktop:10.0:sp4:*:*:lts:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 3.14.5 (включая)
cpe:2.3:o:linux:linux_kernel:3.14:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14:rc8:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:3.14.4:*:*:*:*:*:*:*

EPSS

Процентиль: 27%
0.00089
Низкий

3.3 Low

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
около 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

redhat
около 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

debian
около 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDIT ...

github
около 3 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

oracle-oval
почти 11 лет назад

ELSA-2014-3074: unbreakable enterprise kernel security bug fix update (IMPORTANT)

EPSS

Процентиль: 27%
0.00089
Низкий

3.3 Low

CVSS2

Дефекты

CWE-200