Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2013-0830

Опубликовано: 16 мая 2013
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2013-0830: kernel security update (IMPORTANT)

[2.6.32-358.6.2]

  • [kernel] perf: fix perf_swevent_enabled array out-of-bound access (Petr Matousek) [962793 962794] {CVE-2013-2094}

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel

2.6.32-358.6.2.el6

kernel-debug

2.6.32-358.6.2.el6

kernel-debug-devel

2.6.32-358.6.2.el6

kernel-devel

2.6.32-358.6.2.el6

kernel-doc

2.6.32-358.6.2.el6

kernel-firmware

2.6.32-358.6.2.el6

kernel-headers

2.6.32-358.6.2.el6

perf

2.6.32-358.6.2.el6

python-perf

2.6.32-358.6.2.el6

Oracle Linux i686

kernel

2.6.32-358.6.2.el6

kernel-debug

2.6.32-358.6.2.el6

kernel-debug-devel

2.6.32-358.6.2.el6

kernel-devel

2.6.32-358.6.2.el6

kernel-doc

2.6.32-358.6.2.el6

kernel-firmware

2.6.32-358.6.2.el6

kernel-headers

2.6.32-358.6.2.el6

perf

2.6.32-358.6.2.el6

python-perf

2.6.32-358.6.2.el6

Связанные CVE

Связанные уязвимости

CVSS3: 8.4
ubuntu
около 12 лет назад

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.

redhat
около 12 лет назад

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.

CVSS3: 8.4
nvd
около 12 лет назад

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.

CVSS3: 8.4
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 8.4
debian
около 12 лет назад

The perf_swevent_init function in kernel/events/core.c in the Linux ke ...