PT-2006-2845 · Linux+1 · Linux Kernel+1
Jason Baron
·
Published
2006-05-19
·
Updated
2017-10-11
·
CVE-2006-1856
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 2.6.16 and earlier
Description
The issue is related to certain modifications in the Linux kernel that do not properly add Linux Security Modules (LSM) file permission hooks to the
readv and writev functions. This might allow attackers to bypass intended access restrictions.Recommendations
For Linux kernel versions 2.6.16 and earlier, consider applying modifications to add the appropriate LSM file permission hooks to the
readv and writev functions to prevent bypassing of access restrictions.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel
Red Hat