LWN.net Logo

kernel: privilege escalation

Package(s):kernel CVE #(s):CVE-2009-1897
Created:July 27, 2009 Updated:October 5, 2009
Description:

From the CVE entry:

The tun_chr_poll function in drivers/net/tun.c in the tun subsystem in the Linux kernel 2.6.30 and 2.6.30.1, when the -fno-delete-null-pointer-checks gcc option is omitted, allows local users to gain privileges via vectors involving a NULL pointer dereference and an mmap of /dev/net/tun, a different vulnerability than CVE-2009-1894.

Alerts:
Fedora FEDORA-2009-9044 2009-08-27
Fedora FEDORA-2009-8649 2009-08-15
Fedora FEDORA-2009-8647 2009-08-15
Fedora FEDORA-2009-8684 2009-08-17
Fedora FEDORA-2009-8144 2009-07-31
Fedora FEDORA-2009-8264 2009-08-04
rPath rPSA-2009-0111-1 2009-07-24
Fedora FEDORA-2009-10165 2009-10-03

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds