CVE-2006-1856
Certain modifications to the Linux kernel 2.6.16 and earlier do not add the appropriate Linux Security Modules (LSM) file_permission hooks to the (1) readv and (2) writev functions, which might allow attackers to bypass intended access restrictions.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.98%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Certain modifications to the Linux kernel 2.6.16 and earlier do not add the appropriate Linux Security Modules (LSM) file_permission hooks to the (1) readv and (2) writev functions, which might allow attackers to bypass intended access restrictions.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 2.98% probability · 87th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- secalert@redhat.com
References
- http://lists.jammed.com/linux-security-module/2005/09/0019.html
- http://secunia.com/advisories/20237
- http://secunia.com/advisories/20716
- http://secunia.com/advisories/21045
- http://secunia.com/advisories/21745
- http://secunia.com/advisories/22093
- http://support.avaya.com/elmodocs2/security/ASA-2006-161.htm
- http://www.debian.org/security/2006/dsa-1184
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:123
- http://www.osvdb.org/25747
- http://www.redhat.com/support/errata/RHSA-2006-0493.html
- http://www.securityfocus.com/bid/18105
- http://www.ubuntu.com/usn/usn-302-1
- http://www.ussg.iu.edu/hypermail/linux/kernel/0604.3/0777.html
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=191524
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9927
- http://lists.jammed.com/linux-security-module/2005/09/0019.html
- http://secunia.com/advisories/20237
- http://secunia.com/advisories/20716
- http://secunia.com/advisories/21045
- http://secunia.com/advisories/21745
- http://secunia.com/advisories/22093
- http://support.avaya.com/elmodocs2/security/ASA-2006-161.htm
- http://www.debian.org/security/2006/dsa-1184
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:123
- http://www.osvdb.org/25747
- http://www.redhat.com/support/errata/RHSA-2006-0493.html
- http://www.securityfocus.com/bid/18105
- http://www.ubuntu.com/usn/usn-302-1
- http://www.ussg.iu.edu/hypermail/linux/kernel/0604.3/0777.html
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.