7.2

CVE-2009-0343

Exploit

Niels Provos Systrace 1.6f and earlier on the x86_64 Linux platform allows local users to bypass intended access restrictions by making a 32-bit syscall with a syscall number that corresponds to a policy-compliant 64-bit syscall, related to race conditions that occur in monitoring 64-bit processes.

Data is provided by the National Vulnerability Database (NVD)
Niels ProvosSystrace Version <= 1.6e
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.1
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.2
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.3
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.4
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.5
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.6
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.6a
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.6b
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.6c
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Niels ProvosSystrace Version1.6d
   LinuxLinux Kernel Version_nil_ Update_nil_ Editionx86_64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.254
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C