PT-2006-7599 · Linux+2 · Linux Kernel+2
Marcel Holtmann
·
Published
1970-01-01
·
Updated
2018-10-18
·
CVE-2006-2451
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
openSUSE (affected versions not specified)
Linux kernel versions 2.6.13 through 2.6.17.4
Linux kernel version 2.6.16 through 2.6.16.24
Description
The issue affects multiple packages in the openSUSE operating system, allowing for remote exploitation that may lead to a breach of confidentiality, integrity, and availability of protected information. In the Linux kernel, the suid dumpable support allows a local user to cause a denial of service and possibly gain privileges via the PR SET DUMPABLE argument of the prctl function and a program that causes a core dump file to be created in a directory for which the user does not have permissions.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel
Red Hat
Opensuse