Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-4258

Опубликовано: 30 дек. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.2

Описание

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by leveraging a (1) BUG, (2) NULL pointer dereference, or (3) page fault, as demonstrated by vectors involving the clear_child_tid feature and the splice system call.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.6.39-0.0
hardy

released

2.6.24-29.88
karmic

ignored

end of life, was pending
lucid

released

2.6.32-28.52
maverick

released

2.6.35-25.43
natty

released

2.6.37-9.22
upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

ignored

end of life
lucid

released

2.6.32-312.24
maverick

ignored

end of life
natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

ignored

end of life
lucid

released

2.6.31-609.26
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

DNE

lucid

released

2.6.35-25.44~lucid1
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

not-affected

2.6.38-1.27~lucid1
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

ignored

end of life
lucid

released

2.6.32-214.30
maverick

released

2.6.32-414.30
natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

released

2.6.15-57.97
devel

DNE

hardy

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

released

2.6.37~rc5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.6.38-1309.13
hardy

DNE

karmic

DNE

lucid

DNE

maverick

released

2.6.35-903.22
natty

not-affected

2.6.38-1201.2
upstream

released

2.6.37~rc5

Показывать по

EPSS

Процентиль: 90%
0.05856
Низкий

6.2 Medium

CVSS2

Связанные уязвимости

redhat
около 15 лет назад

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by leveraging a (1) BUG, (2) NULL pointer dereference, or (3) page fault, as demonstrated by vectors involving the clear_child_tid feature and the splice system call.

nvd
около 15 лет назад

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by leveraging a (1) BUG, (2) NULL pointer dereference, or (3) page fault, as demonstrated by vectors involving the clear_child_tid feature and the splice system call.

debian
около 15 лет назад

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.3 ...

github
больше 3 лет назад

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by leveraging a (1) BUG, (2) NULL pointer dereference, or (3) page fault, as demonstrated by vectors involving the clear_child_tid feature and the splice system call.

suse-cvrf
почти 14 лет назад

Security update for Kernel

EPSS

Процентиль: 90%
0.05856
Низкий

6.2 Medium

CVSS2