Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-1894

Опубликовано: 16 июл. 2009
Источник: redhat
CVSS2: 7.2
EPSS Низкий

Описание

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.

Дополнительная информация

Статус:

Important
Дефект:
CWE-271
https://bugzilla.redhat.com/show_bug.cgi?id=510071pulseaudio: privilege escalation flaw via pulseaudio re-exec

EPSS

Процентиль: 28%
0.00101
Низкий

7.2 High

CVSS2

Связанные уязвимости

ubuntu
больше 16 лет назад

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.

nvd
больше 16 лет назад

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.

debian
больше 16 лет назад

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local us ...

github
почти 4 года назад

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.

EPSS

Процентиль: 28%
0.00101
Низкий

7.2 High

CVSS2