PT-2011-3362 · Red Hat · Systemtap+1
Published
2011-05-31
·
Updated
2023-02-13
·
CVE-2011-1781
CVSS v2.0
1.2
Low
| Vector | AV:L/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
SystemTap version 1.4
Description
The issue allows local users to cause a denial of service, resulting in a divide-by-zero error and OOPS, by utilizing a crafted ELF program with DWARF expressions that are not properly handled by a stap script performing stack unwinding.
Recommendations
For SystemTap version 1.4, consider disabling the unprivileged mode until a patch is available to prevent the denial of service. Restrict access to stap scripts that perform stack unwinding to minimize the risk of exploitation.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Red Hat
Systemtap