PT-2011-5207 · Linux+3 · Linux Kernel+5
Petr Matousek
·
Publicado
1970-01-01
·
Atualizado
2025-09-29
·
CVE-2013-2094
CVSS v3.1
8.4
Alta
| Vetor | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
openSUSE systemtap-runtime-debuginfo (affected versions not specified)
openSUSE systemtap (affected versions not specified)
openSUSE libvmtools0-debuginfo (affected versions not specified)
openSUSE libvmtools-devel (affected versions not specified)
openSUSE libvmtools0 (affected versions not specified)
openSUSE systemtap-client-debuginfo (affected versions not specified)
openSUSE systemtap-server-debuginfo (affected versions not specified)
openSUSE systemtap-debuginfo (affected versions not specified)
openSUSE systemtap-debugsource (affected versions not specified)
openSUSE kernel-vanilla-base-debuginfo (affected versions not specified)
SUSE Linux Enterprise ext4-writeable-kmp-xen (affected versions not specified)
openSUSE kernel-vanilla-base (affected versions not specified)
openSUSE systemtap-sdt-devel (affected versions not specified)
openSUSE systemtap-client (affected versions not specified)
openSUSE systemtap-runtime (affected versions not specified)
openSUSE systemtap-server (affected versions not specified)
Linux kernel before 3.8.9
Description
The issue concerns multiple vulnerabilities in various packages of the openSUSE and SUSE Linux Enterprise operating systems, as well as the Linux kernel. These vulnerabilities can lead to a disruption of confidentiality, integrity, and availability of protected information. Exploitation can be carried out remotely or locally, depending on the specific vulnerability. In some cases, exploitation can result in privilege escalation. The estimated number of potentially affected devices is not provided. Real-world incidents where this issue was exploited have been reported, with attackers gaining administrator access to a system by exploiting a combination of vulnerabilities, including SQL injection and a Linux kernel vulnerability.
Recommendations
For openSUSE systemtap-runtime-debuginfo, update to a version that contains a fix for this issue.
For openSUSE systemtap, update to a version that contains a fix for this issue.
For openSUSE libvmtools0-debuginfo, update to a version that contains a fix for this issue.
For openSUSE libvmtools-devel, update to a version that contains a fix for this issue.
For openSUSE libvmtools0, update to a version that contains a fix for this issue.
For openSUSE systemtap-client-debuginfo, update to a version that contains a fix for this issue.
For openSUSE systemtap-server-debuginfo, update to a version that contains a fix for this issue.
For openSUSE systemtap-debuginfo, update to a version that contains a fix for this issue.
For openSUSE systemtap-debugsource, update to a version that contains a fix for this issue.
For openSUSE kernel-vanilla-base-debuginfo, update to a version that contains a fix for this issue.
For SUSE Linux Enterprise ext4-writeable-kmp-xen, update to a version that contains a fix for this issue.
For openSUSE kernel-vanilla-base, update to a version that contains a fix for this issue.
For openSUSE systemtap-sdt-devel, update to a version that contains a fix for this issue.
For openSUSE systemtap-client, update to a version that contains a fix for this issue.
For openSUSE systemtap-runtime, update to a version that contains a fix for this issue.
For openSUSE systemtap-server, update to a version that contains a fix for this issue.
For Linux kernel before 3.8.9, update to version 3.8.9 or later.
Exploit
Correção
Buffer Overflow
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Centos
Linux Kernel
Red Hat
Suse Linux Enterprise
Suse
Opensuse