Lucene search

K
ubuntuUbuntuUSN-1342-1
HistoryJan 26, 2012 - 12:00 a.m.

Linux kernel (Oneiric backport) vulnerability

2012-01-2600:00:00
ubuntu.com
44

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

46.9%

Releases

  • Ubuntu 10.04

Packages

  • linux-lts-backport-oneiric - Linux kernel backport from Oneiric

Details

Jüri Aedla discovered that the kernel incorrectly handled /proc//mem
permissions. A local attacker could exploit this and gain root privileges.

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

46.9%