|
|
| |
|
| |
systemtap: denial of service
| Package(s): | systemtap |
CVE #(s): | CVE-2011-1781
CVE-2011-1769
|
| Created: | May 27, 2011 |
Updated: | October 17, 2011 |
| Description: |
From the Fedora advisory:
Two divide-by-zero flaws were found in the way systemtap interpreted certain corrupted DWARF expressions. A privileged user able to execute arbitrary systemtap scripts could be
tricked into triggering this flaw to crash the target machine. An unprivileged user (in the
stapusr group) may be able to trigger this flaw to crash the target machine, only if unprivileged
mode was enabled by the system administrator.
|
| Alerts: |
|
( Log in to post comments)
|
|
|