CVE-2012-0056
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.8%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 10.75% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- linux/linux kernel
- Source
- secalert@redhat.com
References
- http://blog.zx2c4.com/749Third Party Advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=e268337dfe26dfc7efd422a804dbb27977a3ccccVendor Advisory
- http://secunia.com/advisories/47708Broken Link
- http://ubuntu.com/usn/usn-1336-1Third Party Advisory
- http://www.kb.cert.org/vuls/id/470151Third Party Advisory, US Government Resource
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.2Vendor Advisory
- http://www.openwall.com/lists/oss-security/2012/01/18/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/18/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/19/4Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/22/4Mailing List, Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2012-0052.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2012-0061.htmlThird Party Advisory
- http://www.securityfocus.com/bid/51625Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=782642Issue Tracking, Third Party Advisory
- http://blog.zx2c4.com/749Third Party Advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=e268337dfe26dfc7efd422a804dbb27977a3ccccVendor Advisory
- http://secunia.com/advisories/47708Broken Link
- http://ubuntu.com/usn/usn-1336-1Third Party Advisory
- http://www.kb.cert.org/vuls/id/470151Third Party Advisory, US Government Resource
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.2Vendor Advisory
- http://www.openwall.com/lists/oss-security/2012/01/18/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/18/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/19/4Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2012/01/22/4Mailing List, Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2012-0052.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2012-0061.htmlThird Party Advisory
- http://www.securityfocus.com/bid/51625Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=782642Issue Tracking, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.