CVE-2009-1337
Vulnerability Summary
Timeline
Description
The exit_notify function in kernel/exit.c in the Linux kernel before 2.6.30-rc1 does not restrict exit signals when the CAP_KILL capability is held, which allows local users to send an arbitrary signal to a process by running a program that modifies the exit_signal field and then uses an exec system call to launch a setuid application.
CVSS Metrics
- v2.0•MEDIUM•Score: 4.4AV:L/AC:M/Au:N/C:P/I:P/A:P
EPSS Trends
Current EPSS score: 0.26%• Percentile: 49%
Techniques & Countermeasures
- CWE-264•Permissions, Privileges, and Access Controls
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Affected Systems
- linux•linux_kernel
≤ 2.6.29 | 2.2.27 | 2.4.36 | 2.4.36.1 | 2.4.36.2 | 2.4.36.3 | 2.4.36.4 | 2.4.36.5 | 2.4.36.6 | 2.6 | 2.6.0 | 2.6.1 | 2.6.2 | 2.6.3 | 2.6.4 | 2.6.5 | 2.6.6 | 2.6.7 | 2.6.8 | 2.6.8.1 | 2.6.9 | 2.6.10 | 2.6.11 | 2.6.11.1 | 2.6.11.2 | 2.6.11.3 | 2.6.11.4 | 2.6.11.5 | 2.6.11.6 | 2.6.11.7 | 2.6.11.8 | 2.6.11.9 | 2.6.11.10 | 2.6.11.11 | 2.6.11.12 | 2.6.12 | 2.6.12.1 | 2.6.12.2 | 2.6.12.3 | 2.6.12.4 | 2.6.12.5 | 2.6.12.6 | 2.6.13 | 2.6.13.1 | 2.6.13.2 | 2.6.13.3 | 2.6.13.4 | 2.6.13.5 | 2.6.14 | 2.6.14.1 | 2.6.14.2 | 2.6.14.3 | 2.6.14.4 | 2.6.14.5 | 2.6.14.6 | 2.6.14.7 | 2.6.15 | 2.6.15.1 | 2.6.15.2 | 2.6.15.3 | 2.6.15.4 | 2.6.15.5 | 2.6.15.6 | 2.6.15.7 | 2.6.16 | 2.6.16.1 | 2.6.16.2 | 2.6.16.3 | 2.6.16.4 | 2.6.16.5 | 2.6.16.6 | 2.6.16.7 | 2.6.16.8 | 2.6.16.9 | 2.6.16.10 | 2.6.16.11 | 2.6.16.12 | 2.6.16.13 | 2.6.16.14 | 2.6.16.15 | 2.6.16.16 | 2.6.16.17 | 2.6.16.18 | 2.6.16.19 | 2.6.16.20 | 2.6.16.21 | 2.6.16.22 | 2.6.16.23 | 2.6.16.24 | 2.6.16.25 | 2.6.16.26 | 2.6.16.27 | 2.6.16.28 | 2.6.16.29 | 2.6.16.30 | 2.6.16.31 | 2.6.16.32 | 2.6.16.33 | 2.6.16.34 | 2.6.16.35 | 2.6.16.36 | 2.6.16.37 | 2.6.16.38 | 2.6.16.39 | 2.6.16.40 | 2.6.16.41 | 2.6.16.42 | 2.6.16.43 | 2.6.16.44 | 2.6.16.45 | 2.6.16.46 | 2.6.16.47 | 2.6.16.48 | 2.6.16.49 | 2.6.16.50 | 2.6.16.51 | 2.6.16.52 | 2.6.16.53 | 2.6.16.54 | 2.6.16.55 | 2.6.16.56 | 2.6.16.57 | 2.6.16.58 | 2.6.16.59 | 2.6.16.60 | 2.6.16.61 | 2.6.16.62 | 2.6.17 | 2.6.17.1 | 2.6.17.2 | 2.6.17.3 | 2.6.17.4 | 2.6.17.5 | 2.6.17.6 | 2.6.17.7 | 2.6.17.8 | 2.6.17.9 | 2.6.17.10 | 2.6.17.11 | 2.6.17.12 | 2.6.17.13 | 2.6.17.14 | 2.6.18 | 2.6.18:rc1 | 2.6.18:rc2 | 2.6.18:rc3 | 2.6.18:rc4 | 2.6.18:rc5 | 2.6.18:rc6 | 2.6.18:rc7 | 2.6.18.1 | 2.6.18.2 | 2.6.18.3 | 2.6.18.4 | 2.6.18.5 | 2.6.18.6 | 2.6.18.7 | 2.6.18.8 | 2.6.19 | 2.6.19.1 | 2.6.19.2 | 2.6.19.3 | 2.6.19.4 | 2.6.19.5 | 2.6.19.6 | 2.6.19.7 | 2.6.20 | 2.6.20.1 | 2.6.20.2 | 2.6.20.3 | 2.6.20.4 | 2.6.20.5 | 2.6.20.6 | 2.6.20.7 | 2.6.20.8 | 2.6.20.9 | 2.6.20.10 | 2.6.20.11 | 2.6.20.12 | 2.6.20.13 | 2.6.20.14 | 2.6.20.15 | 2.6.20.16 | 2.6.20.17 | 2.6.20.18 | 2.6.20.19 | 2.6.20.20 | 2.6.20.21 | 2.6.21 | 2.6.21.1 | 2.6.21.2 | 2.6.21.3 | 2.6.21.4 | 2.6.21.5 | 2.6.21.6 | 2.6.21.7 | 2.6.22 | 2.6.22.1 | 2.6.22.2 | 2.6.22.3 | 2.6.22.4 | 2.6.22.5 | 2.6.22.6 | 2.6.22.7 | 2.6.22.8 | 2.6.22.9 | 2.6.22.10 | 2.6.22.11 | 2.6.22.12 | 2.6.22.13 | 2.6.22.14 | 2.6.22.15 | 2.6.22.16 | 2.6.22.17 | 2.6.22.18 | 2.6.22.19 | 2.6.22.20 | 2.6.22.21 | 2.6.22.22 | 2.6.22_rc1 | 2.6.22_rc7 | 2.6.23 | 2.6.23:rc1 | 2.6.23:rc2 | 2.6.23.1 | 2.6.23.2 | 2.6.23.3 | 2.6.23.4 | 2.6.23.5 | 2.6.23.6 | 2.6.23.7 | 2.6.23.8 | 2.6.23.9 | 2.6.23.10 | 2.6.23.11 | 2.6.23.12 | 2.6.23.13 | 2.6.23.14 | 2.6.23.15 | 2.6.23.16 | 2.6.23.17 | 2.6.24 | 2.6.24:rc1 | 2.6.24:rc2 | 2.6.24:rc3 | 2.6.24:rc4 | 2.6.24:rc5 | 2.6.24.1 | 2.6.24.2 | 2.6.24.3 | 2.6.24.4 | 2.6.24.5 | 2.6.24.6 | 2.6.24.7 | 2.6.25 | 2.6.25.1 | 2.6.25.2 | 2.6.25.3 | 2.6.25.4 | 2.6.25.5 | 2.6.25.6 | 2.6.25.7 | 2.6.25.8 | 2.6.25.9 | 2.6.25.10 | 2.6.25.11 | 2.6.25.12 | 2.6.25.13 | 2.6.25.14 | 2.6.25.15 | 2.6.25.16 | 2.6.25.17 | 2.6.25.18 | 2.6.25.19 | 2.6.25.20 | 2.6.26 | 2.6.26:rc4 | 2.6.26.1 | 2.6.26.2 | 2.6.26.3 | 2.6.26.4 | 2.6.26.5 | 2.6.26.6 | 2.6.26.7 | 2.6.26.8 | 2.6.27 | 2.6.27:rc1 | 2.6.27:rc2 | 2.6.27:rc3 | 2.6.27:rc4 | 2.6.27:rc5 | 2.6.27:rc6 | 2.6.27:rc7 | 2.6.27:rc8 | 2.6.27:rc9 | 2.6.27.1 | 2.6.27.2 | 2.6.27.3 | 2.6.27.4 | 2.6.27.5 | 2.6.27.6 | 2.6.27.7 | 2.6.27.8 | 2.6.27.9 | 2.6.27.10 | 2.6.27.11 | 2.6.27.12 | 2.6.28 | 2.6.28:git7 | 2.6.28:rc1 | 2.6.28:rc2 | 2.6.28:rc3 | 2.6.28:rc4 | 2.6.28:rc5 | 2.6.28:rc6 | 2.6.28:rc7 | 2.6.28.1 | 2.6.28.2 | 2.6.28.3 | 2.6.28.4 | 2.6.28.5 | 2.6.28.6 | 2.6.28.7 | 2.6.28.8 | 2.6.28.9 | 2.6.29 | 2.6.29:git1 | 2.6.29:rc1 | 2.6.29:rc2
References (49)
- http://secunia.com/advisories/35390
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:135
- http://www.securityfocus.com/archive/1/512019/100/0/threaded
- http://secunia.com/advisories/35226
- http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html
- http://secunia.com/advisories/37471
- http://secunia.com/advisories/35160
- https://www.redhat.com/archives/fedora-package-announce/2009-May/msg01126.html
- http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00002.html
- http://www.openwall.com/lists/oss-security/2009/04/07/1
- http://secunia.com/advisories/35656
- http://www.vmware.com/security/advisories/VMSA-2009-0016.html
- https://bugzilla.redhat.com/show_bug.cgi?id=493771
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=432870dab85a2f69dc417022646cb9a70acf7f94
- http://www.debian.org/security/2009/dsa-1794
- http://www.securityfocus.com/archive/1/503610/100/0/threaded
- http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html
- http://marc.info/?l=linux-kernel&m=123560588713763&w=2
- http://secunia.com/advisories/35324
- http://secunia.com/advisories/35185
- http://secunia.com/advisories/35015
- http://patchwork.kernel.org/patch/16544/
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11206
- http://secunia.com/advisories/35011
- http://www.securityfocus.com/archive/1/507985/100/0/threaded
- http://secunia.com/advisories/35120
- http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html
- http://www.ubuntu.com/usn/usn-793-1
- http://secunia.com/advisories/34981
- http://www.debian.org/security/2009/dsa-1800
- http://www.redhat.com/support/errata/RHSA-2009-1077.html
- http://www.securitytracker.com/id?1022141
- http://www.securityfocus.com/bid/34405
- http://secunia.com/advisories/35387
- http://secunia.com/advisories/34917
- https://rhn.redhat.com/errata/RHSA-2009-1550.html
- http://www.debian.org/security/2009/dsa-1787
- http://www.redhat.com/support/errata/RHSA-2009-1024.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:119
- http://www.openwall.com/lists/oss-security/2009/04/17/3
- http://rhn.redhat.com/errata/RHSA-2009-0473.html
- http://wiki.rpath.com/Advisories:rPSA-2009-0084
- http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.30-rc1
- http://www.redhat.com/support/errata/RHSA-2009-0451.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8295
- http://secunia.com/advisories/35121
- http://www.vupen.com/english/advisories/2009/3316
- http://secunia.com/advisories/35394
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10919