Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-8709

Опубликовано: 08 фев. 2016
Источник: nvd
CVSS3: 7
CVSS2: 6.9
EPSS Низкий

Описание

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user namespace, waiting for a root process to enter that namespace with an unsafe uid or gid, and then using the ptrace system call. NOTE: the vendor states "there is no kernel bug here.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.4.1 (включая)

EPSS

Процентиль: 18%
0.00059
Низкий

7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 7
ubuntu
почти 10 лет назад

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user namespace, waiting for a root process to enter that namespace with an unsafe uid or gid, and then using the ptrace system call. NOTE: the vendor states "there is no kernel bug here.

redhat
около 10 лет назад

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user namespace, waiting for a root process to enter that namespace with an unsafe uid or gid, and then using the ptrace system call. NOTE: the vendor states "there is no kernel bug here.

CVSS3: 7
debian
почти 10 лет назад

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and g ...

CVSS3: 7
github
больше 3 лет назад

** DISPUTED ** kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user namespace, waiting for a root process to enter that namespace with an unsafe uid or gid, and then using the ptrace system call. NOTE: the vendor states "there is no kernel bug here."

suse-cvrf
почти 10 лет назад

Security update for Linux Kernel Live Patch 5

EPSS

Процентиль: 18%
0.00059
Низкий

7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-264