Beveiligingsadvies

CVE-2012-0056

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-01-27 15:00:00
Laatst bijgewerkt 2024-08-06 18:09:17
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.