Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3939

Опубликовано: 28 сент. 2009
Источник: redhat
CVSS2: 3.6
EPSS Низкий

Описание

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

Отчет

This issue did not affect the version of the Linux kernel as shipped with Red Hat Enterprise Linux 3, as it does not implement the sysfs file system ("/sys/"), through which poll_mode_io file is exposed by the megaraid_sas driver.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=526068kernel: megaraid_sas permissions in sysfs

EPSS

Процентиль: 13%
0.00044
Низкий

3.6 Low

CVSS2

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 16 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

CVSS3: 7.1
nvd
почти 16 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

CVSS3: 7.1
debian
почти 16 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel ...

CVSS3: 7.1
github
больше 3 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

fstec
почти 11 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 13%
0.00044
Низкий

3.6 Low

CVSS2