[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-1737Date: (C)2014-05-15   (M)2024-03-25


The raw_cmd_copyin function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly handle error conditions during processing of an FDRAWCMD ioctl call, which allows local users to trigger kfree operations and gain privileges by leveraging write access to a /dev/fd device.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.2
Exploit Score: 3.9
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
-1030474
-59262
-59309
-59406
-59599
-67300
DSA-2926
DSA-2928
RHSA-2014:0800
RHSA-2014:0801
SUSE-SU-2014:0667
SUSE-SU-2014:0683
http://www.openwall.com/lists/oss-security/2014/05/09/2
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ef87dbe7614341c2e7bfe8d32fcb7028cc97442c
http://linux.oracle.com/errata/ELSA-2014-0771.html
http://linux.oracle.com/errata/ELSA-2014-3043.html
https://bugzilla.redhat.com/show_bug.cgi?id=1094299
https://github.com/torvalds/linux/commit/ef87dbe7614341c2e7bfe8d32fcb7028cc97442c

CPE    3
cpe:/o:debian:debian_linux:7.0
cpe:/o:linux:linux_kernel
cpe:/o:debian:debian_linux:6.0
CWE    1
CWE-754
OVAL    58
oval:org.secpod.oval:def:107479
oval:org.secpod.oval:def:107833
oval:org.secpod.oval:def:107916
oval:org.secpod.oval:def:108483
...

© SecPod Technologies