imPC@ndo IT

Tracker / CVE-2009-3889

CVE-2009-3889

Medium 6.6

The dbg_lvl file for the megaraid_sas driver in the Linux kernel before 2.6.27 has world-writable permissions, which allows local users to change the (1) behavior and (2) logging level of the driver by modifying this file.

Affected products and versions

linux linux_kernel
linux linux_kernel · … → 2.6.26

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References