Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3939

Опубликовано: 28 сент. 2009
Источник: redhat
CVSS2: 3.6
EPSS Низкий

Описание

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

Отчет

This issue did not affect the version of the Linux kernel as shipped with Red Hat Enterprise Linux 3, as it does not implement the sysfs file system ("/sys/"), through which poll_mode_io file is exposed by the megaraid_sas driver.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=526068kernel: megaraid_sas permissions in sysfs

EPSS

Процентиль: 13%
0.00044
Низкий

3.6 Low

CVSS2

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 15 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

CVSS3: 7.1
nvd
больше 15 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

CVSS3: 7.1
debian
больше 15 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel ...

CVSS3: 7.1
github
около 3 лет назад

The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.

fstec
больше 10 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 13%
0.00044
Низкий

3.6 Low

CVSS2