Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-1883

Опубликовано: 15 сент. 2009
Источник: redhat
CVSS2: 6.9
EPSS Низкий

Описание

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

Отчет

This issue did not affect kernel packages as shipped in Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG 1.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=505983kernel: missing capability check in z90crypt

EPSS

Процентиль: 23%
0.00077
Низкий

6.9 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

nvd
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

debian
больше 16 лет назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Lin ...

github
почти 4 года назад

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

EPSS

Процентиль: 23%
0.00077
Низкий

6.9 Medium

CVSS2