Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1006

Опубликовано: 22 мар. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.2

Описание

Heap-based buffer overflow in the parse_cgroup_spec function in tools/tools-common.c in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 allows local users to gain privileges via a crafted controller list on the command line of an application. NOTE: it is not clear whether this issue crosses privilege boundaries.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

0.38-1ubuntu2
dapper

DNE

devel

not-affected

0.38-1ubuntu2
esm-apps/bionic

not-affected

0.38-1ubuntu2
esm-apps/xenial

not-affected

0.38-1ubuntu2
esm-infra-legacy/trusty

not-affected

0.38-1ubuntu2
hardy

DNE

karmic

ignored

end of life
lucid

ignored

end of life

Показывать по

Ссылки на источники

EPSS

Процентиль: 33%
0.00129
Низкий

7.2 High

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

Heap-based buffer overflow in the parse_cgroup_spec function in tools/tools-common.c in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 allows local users to gain privileges via a crafted controller list on the command line of an application. NOTE: it is not clear whether this issue crosses privilege boundaries.

nvd
больше 14 лет назад

Heap-based buffer overflow in the parse_cgroup_spec function in tools/tools-common.c in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 allows local users to gain privileges via a crafted controller list on the command line of an application. NOTE: it is not clear whether this issue crosses privilege boundaries.

debian
больше 14 лет назад

Heap-based buffer overflow in the parse_cgroup_spec function in tools/ ...

github
около 3 лет назад

Heap-based buffer overflow in the parse_cgroup_spec function in tools/tools-common.c in the Control Group Configuration Library (aka libcgroup or libcg) before 0.37.1 allows local users to gain privileges via a crafted controller list on the command line of an application. NOTE: it is not clear whether this issue crosses privilege boundaries.

oracle-oval
больше 14 лет назад

ELSA-2011-0320: libcgroup security update (IMPORTANT)

EPSS

Процентиль: 33%
0.00129
Низкий

7.2 High

CVSS2