Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-3917

Опубликовано: 28 мая 2014
Источник: redhat
CVSS2: 4.7
EPSS Низкий

Описание

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

An out-of-bounds memory access flaw was found in the Linux kernel's system call auditing implementation. On a system with existing audit rules defined, a local, unprivileged user could use this flaw to leak kernel memory to user space or, potentially, crash the system.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-119

EPSS

Процентиль: 26%
0.00089
Низкий

4.7 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

nvd
больше 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

debian
больше 11 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDIT ...

github
больше 3 лет назад

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

oracle-oval
больше 11 лет назад

ELSA-2014-3074: unbreakable enterprise kernel security bug fix update (IMPORTANT)

EPSS

Процентиль: 26%
0.00089
Низкий

4.7 Medium

CVSS2