Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-3510
HistoryOct 03, 2012 - 12:00 a.m.

CVE-2012-3510

2012-10-0300:00:00
ubuntu.com
ubuntu.com
17

CVSS2

5.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:P/I:N/A:C

EPSS

0

Percentile

5.1%

Use-after-free vulnerability in the xacct_add_tsk function in
kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to
obtain potentially sensitive information from kernel memory or cause a
denial of service (system crash) via a taskstats TASKSTATS_CMD_ATTR_PID
command.

Bugs

Notes

Author Note
jdstrand linux-armadaxp is maintained by OEM
sbeattie introduced by 9acc1853519a0473620d424105f9d49ea5b4e62e and only if TASK_XACCT is enabled.

CVSS2

5.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:P/I:N/A:C

EPSS

0

Percentile

5.1%