PT-2010-1073 · Systemtap+1 · Systemtap-Client+7

David Jeffery

·

Publicado

2010-02-08

·

Atualizado

2024-06-15

·

CVE-2010-0411

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions systemtap-testsuite versions 0.9.7 systemtap-server versions 0.9.7 systemtap-client versions 0.9.7 systemtap-initscript versions 0.9.7 systemtap-runtime versions 0.9.7 systemtap versions 0.9.7 systemtap-sdt-devel versions 0.9.7
Description The issue involves multiple vulnerabilities in the systemtap package, which can lead to a disruption of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely. Additionally, there are integer signedness errors in the get argv and get compat argv functions in tapset/aux syscalls.stp in SystemTap, allowing local users to cause a denial of service via a process with a large number of arguments, leading to a buffer overflow.
Recommendations For systemtap-testsuite version 0.9.7, update to a newer version to mitigate the risk. For systemtap-server version 0.9.7, update to a newer version to mitigate the risk. For systemtap-client version 0.9.7, update to a newer version to mitigate the risk. For systemtap-initscript version 0.9.7, update to a newer version to mitigate the risk. For systemtap-runtime version 0.9.7, update to a newer version to mitigate the risk. For systemtap version 0.9.7, update to a newer version to mitigate the risk. For systemtap-sdt-devel version 0.9.7, update to a newer version to mitigate the risk. As a temporary workaround, consider disabling the get argv and get compat argv functions until a patch is available.

Exploit

Correção

DoS

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-06540
BDU:2015-06541
BDU:2015-06542
BDU:2015-06543
BDU:2015-06544
BDU:2015-06545
BDU:2015-06546
BDU:2015-08574
BDU:2015-08575
BDU:2015-08576
BDU:2015-08577
BDU:2015-08578
BDU:2015-08579
BDU:2015-08580
CVE-2010-0411
OPENSUSE-SU-2024:10506-1
RHSA-2010:0124
RHSA-2010:0125
RHSA-2010_0124
RHSA-2010_0125

Produtos afetados

Red Hat
Systemtap
Systemtap-Client
Systemtap-Initscript
Systemtap-Runtime
Systemtap-Sdt-Devel
Systemtap-Server
Systemtap-Testsuite