CVE-2013-3301
The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for write access…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.98%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for write access to the (1) set_ftrace_pid or (2) set_graph_function file, and then making an lseek system call.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.98% probability · 60th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel · redhat/enterprise linux · redhat/enterprise mrg · suse/linux enterprise desktop · suse/linux enterprise high availability extension · suse/linux enterprise server
- Source
- secalert@redhat.com
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6a76f8c0ab19f215af2a3442870eeb5f0e81998dThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00003.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-12/msg00129.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-1051.htmlThird Party Advisory
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.8.8Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2013/04/15/1Mailing List
- http://www.ubuntu.com/usn/USN-1834-1Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-1835-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-1836-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-1838-1Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=952197Issue Tracking, Third Party Advisory
- https://github.com/torvalds/linux/commit/6a76f8c0ab19f215af2a3442870eeb5f0e81998dExploit
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6a76f8c0ab19f215af2a3442870eeb5f0e81998dThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00003.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-12/msg00129.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-1051.htmlThird Party Advisory
- http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.8.8Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2013/04/15/1Mailing List
- http://www.ubuntu.com/usn/USN-1834-1Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-1835-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-1836-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-1838-1Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=952197Issue Tracking, Third Party Advisory
- https://github.com/torvalds/linux/commit/6a76f8c0ab19f215af2a3442870eeb5f0e81998dExploit
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.