Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11539
HistoryJan 15, 2019 - 9:03 a.m.

Privilege Escalation

2019-01-1509:03:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.0004 Low

EPSS

Percentile

0.4%

kernel-rt is vulnerable to privilege escalation attacks. The vulnerability exists as arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by triggering an IRET instruction that leads to access to a GS Base address from the wrong space.

References