PT-2016-3561 · Linux+1 · Linux Kernel+1
Published
2015-06-03
·
Updated
2020-08-04
·
CVE-2015-0572
CVSS v2.0
4.4
Medium
| Vector | AV:L/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 3.x
Description
The issue is related to multiple race conditions in the ADSPRPC driver, specifically in the drivers/char/adsprpc.c and drivers/char/adsprpc compat.c files. This can be exploited by attackers to cause a denial of service, resulting in a zero-value write, or possibly have other unspecified impacts. The exploitation is possible via a
COMPAT FASTRPC IOCTL INVOKE FD ioctl call.Recommendations
For Linux kernel version 3.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Linux Kernel