Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-1669
HistoryMay 08, 2008 - 12:00 a.m.

CVE-2008-1669

2008-05-0800:00:00
ubuntu.com
ubuntu.com
17

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

0.0004 Low

EPSS

Percentile

10.1%

Linux kernel before 2.6.25.2 does not apply a certain protection mechanism
for fcntl functionality, which allows local users to (1) execute code in
parallel or (2) exploit a race condition to obtain β€œre-ordered access to
the descriptor table.”

Notes

Author Note
kees Message-Id: <[email protected]>
OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchlinux<Β 2.6.24-18.32UNKNOWN
ubuntu6.06noarchlinux-source-2.6.15<Β 2.6.15-52.67UNKNOWN
ubuntu7.04noarchlinux-source-2.6.20<Β 2.6.20-17.36UNKNOWN
ubuntu7.10noarchlinux-source-2.6.22<Β 2.6.22-15.54UNKNOWN

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

0.0004 Low

EPSS

Percentile

10.1%