Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13807
HistoryMay 02, 2019 - 4:41 a.m.

Netlink Messages Spoofing

2019-05-0204:41:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0

Percentile

5.1%

kernel-rt is vulnerable to message spoofing. A flaw was found in the way Netlink messages without SCM_CREDENTIALS (used for authentication) data set were handled. When not explicitly set, the data was sent but with all values set to 0, including the process ID and user ID, causing the Netlink message to appear as if it were sent with root privileges. A local, unprivileged user could use this flaw to send spoofed Netlink messages to an application, possibly resulting in the application performing privileged operations if it relied on SCM_CREDENTIALS data for the authentication of Netlink messages.

References