Lucene search

K
ubuntuUbuntuUSN-1738-1
HistoryFeb 22, 2013 - 12:00 a.m.

Linux kernel (Oneiric backport) vulnerability

2013-02-2200:00:00
ubuntu.com
46

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

High

EPSS

0

Percentile

10.1%

Releases

  • Ubuntu 10.04

Packages

  • linux-lts-backport-oneiric - Linux kernel backport from Oneiric

Details

Suleiman Souhlal, Salman Qazi, Aaron Durbin and Michael Davidson discovered
a race condition in the Linux kernel’s ptrace syscall. An unprivileged
local attacker could exploit this flaw to run programs as an administrator.

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

High

EPSS

0

Percentile

10.1%