[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2011:1089 -- centos 5 i386 systemtap

ID: oval:org.secpod.oval:def:201482Date: (C)2012-01-31   (M)2023-11-09
Class: PATCHFamily: unix




SystemTap is an instrumentation system for systems running the Linux kernel. The system allows developers to write scripts to collect data on the operation of the system. A race condition flaw was found in the way the staprun utility performed module loading. A local user who is a member of the stapusr group could use this flaw to modify a signed module while it is being loaded, allowing them to escalate their privileges. SystemTap users should upgrade to these updated packages, which contain a backported patch to correct this issue.

Platform:
CentOS 5
Product:
systemtap
Reference:
CESA-2011:1089
CVE-2011-2503
CVE    1
CVE-2011-2503
CPE    32
cpe:/a:systemtap:systemtap:0.5.9
cpe:/a:systemtap:systemtap:0.9.5
cpe:/a:systemtap:systemtap:0.9.7
cpe:/a:systemtap:systemtap:0.9.8
...

© SecPod Technologies