Описание
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | released  | 2.6.24-8.14 | 
| edgy | DNE  | |
| feisty | DNE  | |
| gutsy | DNE  | |
| upstream | released  | 2.6.24.2 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | not-affected  | |
| devel | DNE  | |
| edgy | DNE  | |
| feisty | DNE  | |
| gutsy | DNE  | |
| upstream | not-affected  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | DNE  | |
| edgy | released  | 2.6.17.1-12.44 | 
| feisty | DNE  | |
| gutsy | DNE  | |
| upstream | needed  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | DNE  | |
| edgy | DNE  | |
| feisty | released  | 2.6.20-16.35 | 
| gutsy | DNE  | |
| upstream | needed  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | DNE  | |
| edgy | DNE  | |
| feisty | DNE  | |
| gutsy | released  | 2.6.22-14.52 | 
| upstream | needed  | 
Показывать по
EPSS
7.2 High
CVSS2
Связанные уязвимости
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 ...
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
ELSA-2008-0129: Important: kernel security update (IMPORTANT)
EPSS
7.2 High
CVSS2