LWN.net Logo

kernel: privilege escalation

Package(s):kernel CVE #(s):CVE-2013-1860
Created:March 20, 2013 Updated:March 22, 2013
Description: From the Red Hat bugzilla:

Linux kernel built with USB CDC WDM driver is vulnerable to heap buffer overflow flaw.

An unprivileged local user could use this flaw to crash the kernel or, potentially, elevate their privileges.

Please note that a physical access to the system or plugging in random USB device is needed in order to exploit this bug.

Alerts:
Fedora FEDORA-2013-4012 2013-03-19
Fedora FEDORA-2013-3909 2013-03-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds