Lucene search

K
cveRedhatCVE-2011-2905
HistoryMar 01, 2013 - 12:37 p.m.

CVE-2011-2905

2013-03-0112:37:53
redhat
web.nvd.nist.gov
63
cve-2011-2905
untrusted search path
perf
linux kernel
vulnerability
nvd

CVSS2

6.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:N/C:C/I:C/A:C

AI Score

7

Confidence

High

EPSS

0

Percentile

5.1%

Untrusted search path vulnerability in the perf_config function in tools/perf/util/config.c in perf, as distributed in the Linux kernel before 3.1, allows local users to overwrite arbitrary files via a crafted config file in the current working directory.

Affected configurations

Nvd
Node
linuxlinux_kernelRange3.0.68
OR
linuxlinux_kernelMatch3.0.1
OR
linuxlinux_kernelMatch3.0.2
OR
linuxlinux_kernelMatch3.0.3
OR
linuxlinux_kernelMatch3.0.4
OR
linuxlinux_kernelMatch3.0.5
OR
linuxlinux_kernelMatch3.0.6
OR
linuxlinux_kernelMatch3.0.7
OR
linuxlinux_kernelMatch3.0.8
OR
linuxlinux_kernelMatch3.0.9
OR
linuxlinux_kernelMatch3.0.10
OR
linuxlinux_kernelMatch3.0.11
OR
linuxlinux_kernelMatch3.0.12
OR
linuxlinux_kernelMatch3.0.13
OR
linuxlinux_kernelMatch3.0.14
OR
linuxlinux_kernelMatch3.0.15
OR
linuxlinux_kernelMatch3.0.16
OR
linuxlinux_kernelMatch3.0.17
OR
linuxlinux_kernelMatch3.0.18
OR
linuxlinux_kernelMatch3.0.19
OR
linuxlinux_kernelMatch3.0.20
OR
linuxlinux_kernelMatch3.0.21
OR
linuxlinux_kernelMatch3.0.22
OR
linuxlinux_kernelMatch3.0.23
OR
linuxlinux_kernelMatch3.0.24
OR
linuxlinux_kernelMatch3.0.25
OR
linuxlinux_kernelMatch3.0.26
OR
linuxlinux_kernelMatch3.0.27
OR
linuxlinux_kernelMatch3.0.28
OR
linuxlinux_kernelMatch3.0.29
OR
linuxlinux_kernelMatch3.0.30
OR
linuxlinux_kernelMatch3.0.31
OR
linuxlinux_kernelMatch3.0.32
OR
linuxlinux_kernelMatch3.0.33
OR
linuxlinux_kernelMatch3.0.34
OR
linuxlinux_kernelMatch3.0.35
OR
linuxlinux_kernelMatch3.0.36
OR
linuxlinux_kernelMatch3.0.37
OR
linuxlinux_kernelMatch3.0.38
OR
linuxlinux_kernelMatch3.0.39
OR
linuxlinux_kernelMatch3.0.40
OR
linuxlinux_kernelMatch3.0.41
OR
linuxlinux_kernelMatch3.0.42
OR
linuxlinux_kernelMatch3.0.43
OR
linuxlinux_kernelMatch3.0.44
OR
linuxlinux_kernelMatch3.0.45
OR
linuxlinux_kernelMatch3.0.46
OR
linuxlinux_kernelMatch3.0.47
OR
linuxlinux_kernelMatch3.0.48
OR
linuxlinux_kernelMatch3.0.49
OR
linuxlinux_kernelMatch3.0.50
OR
linuxlinux_kernelMatch3.0.51
OR
linuxlinux_kernelMatch3.0.52
OR
linuxlinux_kernelMatch3.0.53
OR
linuxlinux_kernelMatch3.0.54
OR
linuxlinux_kernelMatch3.0.55
OR
linuxlinux_kernelMatch3.0.56
OR
linuxlinux_kernelMatch3.0.57
OR
linuxlinux_kernelMatch3.0.58
OR
linuxlinux_kernelMatch3.0.59
OR
linuxlinux_kernelMatch3.0.60
OR
linuxlinux_kernelMatch3.0.61
OR
linuxlinux_kernelMatch3.0.62
OR
linuxlinux_kernelMatch3.0.63
OR
linuxlinux_kernelMatch3.0.64
OR
linuxlinux_kernelMatch3.0.65
OR
linuxlinux_kernelMatch3.0.66
OR
linuxlinux_kernelMatch3.0.67
VendorProductVersionCPE
linuxlinux_kernel3.0.41cpe:/o:linux:linux_kernel:3.0.41:::
linuxlinux_kernel3.0.47cpe:/o:linux:linux_kernel:3.0.47:::
linuxlinux_kernel3.0.29cpe:/o:linux:linux_kernel:3.0.29:::
linuxlinux_kernel3.0.60cpe:/o:linux:linux_kernel:3.0.60:::
linuxlinux_kernel3.0.52cpe:/o:linux:linux_kernel:3.0.52:::
linuxlinux_kernel3.0.9cpe:/o:linux:linux_kernel:3.0.9:::
linuxlinux_kernel3.0.4cpe:/o:linux:linux_kernel:3.0.4:::
linuxlinux_kernel3.0.64cpe:/o:linux:linux_kernel:3.0.64:::
linuxlinux_kernel3.0.5cpe:/o:linux:linux_kernel:3.0.5:::
linuxlinux_kernel3.0.26cpe:/o:linux:linux_kernel:3.0.26:::
Rows per page:
1-10 of 681

CVSS2

6.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:N/C:C/I:C/A:C

AI Score

7

Confidence

High

EPSS

0

Percentile

5.1%