PT-2011-5207 · Linux+3 · Linux Kernel+5

Petr Matousek

·

Publicado

1970-01-01

·

Atualizado

2025-09-29

·

CVE-2013-2094

CVSS v3.1

8.4

Alta

VetorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions openSUSE systemtap-runtime-debuginfo (affected versions not specified) openSUSE systemtap (affected versions not specified) openSUSE libvmtools0-debuginfo (affected versions not specified) openSUSE libvmtools-devel (affected versions not specified) openSUSE libvmtools0 (affected versions not specified) openSUSE systemtap-client-debuginfo (affected versions not specified) openSUSE systemtap-server-debuginfo (affected versions not specified) openSUSE systemtap-debuginfo (affected versions not specified) openSUSE systemtap-debugsource (affected versions not specified) openSUSE kernel-vanilla-base-debuginfo (affected versions not specified) SUSE Linux Enterprise ext4-writeable-kmp-xen (affected versions not specified) openSUSE kernel-vanilla-base (affected versions not specified) openSUSE systemtap-sdt-devel (affected versions not specified) openSUSE systemtap-client (affected versions not specified) openSUSE systemtap-runtime (affected versions not specified) openSUSE systemtap-server (affected versions not specified) Linux kernel before 3.8.9
Description The issue concerns multiple vulnerabilities in various packages of the openSUSE and SUSE Linux Enterprise operating systems, as well as the Linux kernel. These vulnerabilities can lead to a disruption of confidentiality, integrity, and availability of protected information. Exploitation can be carried out remotely or locally, depending on the specific vulnerability. In some cases, exploitation can result in privilege escalation. The estimated number of potentially affected devices is not provided. Real-world incidents where this issue was exploited have been reported, with attackers gaining administrator access to a system by exploiting a combination of vulnerabilities, including SQL injection and a Linux kernel vulnerability.
Recommendations For openSUSE systemtap-runtime-debuginfo, update to a version that contains a fix for this issue. For openSUSE systemtap, update to a version that contains a fix for this issue. For openSUSE libvmtools0-debuginfo, update to a version that contains a fix for this issue. For openSUSE libvmtools-devel, update to a version that contains a fix for this issue. For openSUSE libvmtools0, update to a version that contains a fix for this issue. For openSUSE systemtap-client-debuginfo, update to a version that contains a fix for this issue. For openSUSE systemtap-server-debuginfo, update to a version that contains a fix for this issue. For openSUSE systemtap-debuginfo, update to a version that contains a fix for this issue. For openSUSE systemtap-debugsource, update to a version that contains a fix for this issue. For openSUSE kernel-vanilla-base-debuginfo, update to a version that contains a fix for this issue. For SUSE Linux Enterprise ext4-writeable-kmp-xen, update to a version that contains a fix for this issue. For openSUSE kernel-vanilla-base, update to a version that contains a fix for this issue. For openSUSE systemtap-sdt-devel, update to a version that contains a fix for this issue. For openSUSE systemtap-client, update to a version that contains a fix for this issue. For openSUSE systemtap-runtime, update to a version that contains a fix for this issue. For openSUSE systemtap-server, update to a version that contains a fix for this issue. For Linux kernel before 3.8.9, update to version 3.8.9 or later.

Exploit

Correção

Buffer Overflow

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
AZL-34322
AZL-34846
BDU:2015-03064
BDU:2015-04391
BDU:2015-05303
BDU:2015-05304
BDU:2015-05305
BDU:2015-05306
BDU:2015-05307
BDU:2015-05308
BDU:2015-05309
BDU:2015-05310
BDU:2015-05311
BDU:2015-05312
BDU:2015-05313
BDU:2015-05314
BDU:2015-05315
BDU:2015-05542
BDU:2015-05543
CESA-2013_0830
CVE-2013-2094
DSA-2669-1
ELSA-2013-0830
ELSA-2013-2524
OPENSUSE-SU-2013_0847-1
OPENSUSE-SU-2013_0925-1
OPENSUSE-SU-2013_0951-1
OPENSUSE-SU-2013_1042-1
RHSA-2013:0829
RHSA-2013:0830
RHSA-2013:0832
RHSA-2013:0840
RHSA-2013:0841
RHSA-2013_0830
SUSE-SU-2013_0819-1
SUSE-SU-2013_0819-2
SUSE-SU-2015:0481-1
SUSE-SU-2015:0736-1
SUSE-SU-2015:1376-1
USN-1825-1
USN-1826-1
USN-1827-1
USN-1828-1
USN-1836-1
USN-1838-1
USN-1839-1
USN-1849-1

Produtos afetados

Centos
Linux Kernel
Red Hat
Suse Linux Enterprise
Suse
Opensuse