PT-2016-3561 · Linux+1 · Linux Kernel+1

Published

2015-06-03

·

Updated

2020-08-04

·

CVE-2015-0572

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel versions 3.x
Description The issue is related to multiple race conditions in the ADSPRPC driver, specifically in the drivers/char/adsprpc.c and drivers/char/adsprpc compat.c files. This can be exploited by attackers to cause a denial of service, resulting in a zero-value write, or possibly have other unspecified impacts. The exploitation is possible via a COMPAT FASTRPC IOCTL INVOKE FD ioctl call.
Recommendations For Linux kernel version 3.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1485
ALT-PU-2015-1849
CVE-2015-0572

Affected Products

Alt Linux
Linux Kernel