Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-8133
HistoryDec 17, 2014 - 11:59 a.m.

Design/Logic Flaw

2014-12-1711:59:00
PRIOn knowledge base
www.prio-n.com
9

6.4 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.1%

arch/x86/kernel/tls.c in the Thread Local Storage (TLS) implementation in the Linux kernel through 3.18.1 allows local users to bypass the espfix protection mechanism, and consequently makes it easier for local users to bypass the ASLR protection mechanism, via a crafted application that makes a set_thread_area system call and later reads a 16-bit value.

References