imPC@ndo EN

Tracker / CVE-2014-9322

CVE-2014-9322

Alta 7.8

arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by triggering an IRET instruction that leads to access to a GS Base address from the wrong space.

Prodotti e versioni affette

canonical ubuntu_linux
google android
linux linux_kernel · … → 3.2.65
linux linux_kernel · 3.11 → 3.12.35
linux linux_kernel · 3.13 → 3.14.26
linux linux_kernel · 3.15 → 3.16.35
linux linux_kernel · 3.17 → 3.17.5
linux linux_kernel · 3.3 → 3.4.106
linux linux_kernel · 3.5 → 3.10.62
opensuse evergreen
redhat enterprise_linux_eus
suse suse_linux_enterprise_server

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti