CVE-2009-2848

Advisory lineage Upstream: 0 Downstream: 7
Modified
Published: 18 Aug 2009, 20:41
Last modified:07 Aug 2024, 06:07

Vulnerability Summary

Overall Risk (default)
medium
34/100
CVSS Score
5.9 MEDIUM
v2.0 (nvd)
EPSS Score
0.08% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
2 found
Dark Web
Not detected

Timeline

18 Aug 2009, 20:41
Published
Vulnerability first disclosed
07 Aug 2024, 06:07
Last Modified
Vulnerability information updated

Description

The execve function in the Linux kernel, possibly 2.6.30-rc6 and earlier, does not properly clear the current->clear_child_tid pointer, which allows local users to cause a denial of service (memory corruption) or possibly gain privileges via a clone system call with CLONE_CHILD_SETTID or CLONE_CHILD_CLEARTID enabled, which is not properly handled during thread creation and exit.

CVSS Metrics

  • v2.0MEDIUMScore: 5.9AV:L/AC:M/Au:N/C:P/I:P/A:C

EPSS Trends

Current EPSS score: 0.08% Percentile: 24%

Techniques & Countermeasures

  • CWE-269Improper Privilege Management

    The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Systems

  • canonicalubuntu_linux

    6.06 | 8.04 | 8.10 | 9.04

  • fedoraprojectfedora

    11

  • linuxlinux_kernel

    ≤ 2.6.29.5 | 2.6.30 | 2.6.30:rc1 | 2.6.30:rc2 | 2.6.30:rc3 | 2.6.30:rc4 | 2.6.30:rc5 | 2.6.30:rc6

  • novelllinux_desktop

    9

  • opensuseopensuse

    11.0

  • redhatenterprise_linux_desktop

    3.0 | 5.0

  • redhatenterprise_linux_server

    3.0 | 5.0

  • redhatenterprise_linux_workstation

    3.0 | 5.0

  • suselinux_enterprise_desktop

    10:sp2

  • suselinux_enterprise_server

    9 | 10:sp2

  • vmwareesx

    4.0

  • vmwarevma

    4.0

References (26)