7

CVE-2009-3547

Exploit
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc/*/fd/ pathname.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version <= 2.6.31.14
Linux ≫ Linux Kernel Version 2.6.32 Update -
Linux ≫ Linux Kernel Version 2.6.32 Update rc1
Linux ≫ Linux Kernel Version 2.6.32 Update rc2
Linux ≫ Linux Kernel Version 2.6.32 Update rc3
Linux ≫ Linux Kernel Version 2.6.32 Update rc4
Linux ≫ Linux Kernel Version 2.6.32 Update rc5
Novell ≫ Linux Desktop Version 9
Opensuse ≫ Opensuse Version 11.0
Opensuse ≫ Opensuse Version 11.2
Suse ≫ Suse Linux Enterprise Desktop Version 10 Update sp2
Suse ≫ Suse Linux Enterprise Server Version 10 Update sp2
Canonical ≫ Ubuntu Linux Version 6.06
Canonical ≫ Ubuntu Linux Version 8.04
Canonical ≫ Ubuntu Linux Version 8.10
Canonical ≫ Ubuntu Linux Version 9.04
Canonical ≫ Ubuntu Linux Version 9.10
Fedoraproject ≫ Fedora Version 10
VMware ≫ Vma Version 4.0
VMware ≫ Esx Version 4.0
Redhat ≫ Mrg Realtime Version 1.0
Redhat ≫ Enterprise Linux Eus Version 4.8
Redhat ≫ Enterprise Linux Eus Version 5.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.89% 0.911
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7 1 5.9
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

CWE-672 Operation on a Resource after Expiration or Release

The product uses, accesses, or otherwise operates on a resource after that resource has been expired, released, or revoked.

http://lists.vmware.com/pipermail/security-announce/2010/000082.html
Third Party Advisory
Mailing List
http://secunia.com/advisories/38794
Broken Link
http://www.vupen.com/english/advisories/2010/0528
Broken Link
http://www.securityfocus.com/archive/1/512019/100/0/threaded
Third Party Advisory
Broken Link
VDB Entry
https://rhn.redhat.com/errata/RHSA-2009-1550.html
Third Party Advisory
http://secunia.com/advisories/38834
Broken Link
http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00005.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00007.html
Third Party Advisory
Mailing List
http://secunia.com/advisories/37351
Broken Link
http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html
Third Party Advisory
Broken Link
Mailing List
https://rhn.redhat.com/errata/RHSA-2009-1540.html
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2009-1672.html
Broken Link
https://rhn.redhat.com/errata/RHSA-2009-1548.html
Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2009:329
Broken Link
http://www.ubuntu.com/usn/usn-864-1
Third Party Advisory
https://www.redhat.com/archives/fedora-package-announce/2009-November/msg00190.html
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00000.html
Third Party Advisory
Mailing List
http://secunia.com/advisories/38017
Broken Link
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ad3960243e55320d74195fb85c975e0a8cc4466c
Broken Link
http://lkml.org/lkml/2009/10/14/184
Exploit
Mailing List
http://lkml.org/lkml/2009/10/21/42
Patch
Mailing List
http://marc.info/?l=oss-security&m=125724568017045&w=2
Third Party Advisory
Mailing List
http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.32-rc6
Broken Link
http://www.securityfocus.com/bid/36901
Third Party Advisory
Exploit
Broken Link
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=530490
Patch
Third Party Advisory
Issue Tracking
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11513
Third Party Advisory
Broken Link
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7608
Third Party Advisory
Broken Link
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9327
Third Party Advisory
Broken Link
https://rhn.redhat.com/errata/RHSA-2009-1541.html
Third Party Advisory