PT-2006-1007 · Debian+2 · Debian+2
CVE-2006-5755
·
Publicado
2006-12-31
·
Atualizado
2023-02-13
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Debian GNU/Linux kernel-patch-openvz (affected versions not specified)
Linux kernel versions prior to 2.6.18
Description:
The issue affects the Linux kernel and may lead to disruption of confidentiality, integrity, and availability of protected information. A local attacker can exploit this to cause a denial of service (crash) by manipulating the SYSENTER to set an NT flag, which can trigger a crash on the IRET of the next task.
Recommendations:
For Debian GNU/Linux kernel-patch-openvz, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
For Linux kernel versions prior to 2.6.18, update to version 2.6.18 or later to resolve the issue.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Debian
Linux Kernel
Red Hat