Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2930

Опубликовано: 09 дек. 2013
Источник: redhat
CVSS2: 4.7
EPSS Низкий

Описание

The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properly restrict access to the perf subsystem, which allows local users to enable function tracing via a crafted application.

Отчет

This issue does not affect the version of the kernel package as shipped with Red Hat Enterprise Linux 5 and 6.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kernelNot affected
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise MRG 2kernel-rtFixedRHSA-2014:010028.01.2014

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1027778kernel: perf/ftrace: insufficient check in perf_trace_event_perm()

EPSS

Процентиль: 4%
0.00023
Низкий

4.7 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properly restrict access to the perf subsystem, which allows local users to enable function tracing via a crafted application.

nvd
больше 11 лет назад

The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properly restrict access to the perf subsystem, which allows local users to enable function tracing via a crafted application.

debian
больше 11 лет назад

The perf_trace_event_perm function in kernel/trace/trace_event_perf.c ...

github
больше 3 лет назад

The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properly restrict access to the perf subsystem, which allows local users to enable function tracing via a crafted application.

oracle-oval
около 11 лет назад

ELSA-2014-3070: Unbreakable Enterprise kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 4%
0.00023
Низкий

4.7 Medium

CVSS2