[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2007-0997Date: (C)2007-09-18   (M)2023-12-22


Race condition in the tee (sys_tee) system call in the Linux kernel 2.6.17 through 2.6.17.6 might allow local users to cause a denial of service (system crash), obtain sensitive information (kernel memory contents), or gain privileges via unspecified vectors related to a potentially dropped ipipe lock during a race between two pipe readers.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 6.9
Exploit Score: 3.4
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
http://lkml.org/lkml/2006/7/17/140
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.18

CPE    13
cpe:/o:linux:linux_kernel:2.6.17
cpe:/o:linux:linux_kernel:2.6.17.4
cpe:/o:linux:linux_kernel:2.6.17.5
cpe:/o:linux:linux_kernel:2.6.17.6
...
CWE    1
CWE-362

© SecPod Technologies