Lucene search

K
prionPRIOn knowledge basePRION:CVE-2009-1338
HistoryApr 22, 2009 - 3:30 p.m.

Command injection

2009-04-2215:30:00
PRIOn knowledge base
www.prio-n.com
6

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.3%

The kill_something_info function in kernel/signal.c in the Linux kernel before 2.6.28 does not consider PID namespaces when processing signals directed to PID -1, which allows local users to bypass the intended namespace isolation, and send arbitrary signals to all processes in all namespaces, via a kill command.

References

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.3%