Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-3731

Опубликовано: 17 сент. 2007
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.9

Описание

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

РелизСтатусПримечание
dapper

released

2.6.15-29.60
upstream

needed

Показывать по

РелизСтатусПримечание
edgy

released

2.6.17.1-12.41
upstream

needed

Показывать по

РелизСтатусПримечание
feisty

released

2.6.20-16.32
upstream

needed

Показывать по

РелизСтатусПримечание
devel

released

2.6.22-12.39
upstream

released

2.6.22

Показывать по

EPSS

Процентиль: 10%
0.00038
Низкий

4.9 Medium

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

nvd
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

debian
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid ...

github
около 3 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

fstec
больше 10 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 10%
0.00038
Низкий

4.9 Medium

CVSS2