PT-2011-5238 · Opensuse+4 · Systemtap+7

Petr Matousek

·

Published

1970-01-01

·

Updated

2023-02-13

·

CVE-2012-5517

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions openSUSE systemtap-runtime-debuginfo (affected versions not specified) openSUSE systemtap (affected versions not specified) openSUSE systemtap-sdt-devel (affected versions not specified) openSUSE libvmtools0 (affected versions not specified) Linux kernel versions prior to 3.6
Description The issue involves multiple vulnerabilities in various packages of the openSUSE operating system, including systemtap, systemtap-runtime, systemtap-sdt-devel, systemtap-client, systemtap-server, and libvmtools0, which can lead to a disruption of protected information. These vulnerabilities can be exploited remotely. Additionally, a vulnerability in the Linux kernel before version 3.6 allows local users to cause a denial of service or possibly have other impacts by using memory that was hot-added by an administrator.
Recommendations For openSUSE systemtap-runtime-debuginfo, update to a version that includes the fix for this issue. For openSUSE systemtap, update to a version that includes the fix for this issue. For openSUSE systemtap-sdt-devel, update to a version that includes the fix for this issue. For openSUSE libvmtools0, update to a version that includes the fix for this issue. For Linux kernel, update to version 3.6 or later. At the moment, there is no information about a newer version that contains a fix for this vulnerability in other affected packages.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2015-05303
BDU:2015-05304
BDU:2015-05305
BDU:2015-05306
BDU:2015-05307
BDU:2015-05308
BDU:2015-05309
BDU:2015-05310
BDU:2015-05311
BDU:2015-05312
BDU:2015-05313
BDU:2015-05314
BDU:2015-05315
CESA-2012_1580
CVE-2012-5517
OPENSUSE-SU-2013_0925-1
RHSA-2012:1580
RHSA-2012_1580
SUSE-SU-2015:0481-1
USN-1669-1
USN-1670-1
USN-1671-1
USN-1673-1
USN-1677-1
USN-1678-1
USN-1679-1
USN-1704-1

Affected Products

Centos
Linux Kernel
Red Hat
Suse
Libvmtools0
Systemtap
Systemtap-Runtime-Debuginfo
Systemtap-Sdt-Devel