| CVE-2009-2692 |
| 기본정보 |
- 공개일 : 2009-08-14
- 변경일 : 2010-07-13
- 위험도 : 낮음
- 공격 범위 : 로컬
- 피해 유형 : 기밀 유출, 무결성 훼손, 계정 탈취 (관리자 계정), 가용성 침해
|
| CVSS 평가 |
위험도: 7.2 (영향도: 10.0 익스플로잇: 3.9 ) |
| 설명 |
The Linux kernel 2.6.0 through 2.6.30.4, and 2.4.4 through 2.4.37.4, does not initialize all function pointers for socket operations in proto_ops structures, which allows local users to trigger a NULL pointer dereference and gain privileges by using mmap to map page zero, placing arbitrary code on this page, and then invoking an unavailable operation, as demonstrated by the sendpage operation (sock_sendpage function) on a PF_PPPOX socket.
|
| 참조 |
- FULLDISC, 20090813 Linux NULL pointer dereference due to incorrect proto_ops i..
- SECUNIA 보안 권고문, 36278
- SECUNIA 보안 권고문, 36430
- SECUNIA 보안 권고문, 36327
- SECUNIA 보안 권고문, 36289
- SUSE, SUSE-SR:2009:015
- BID, 36038
- BUGTRAQ, 20091120 VMSA-2009-0016 VMware vCenter and ESX update release and vMA..
- CONFIRM, http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=co..
- REDHAT, RHSA-2009:1223
- REDHAT, RHSA-2009:1222
- SECUNIA 보안 권고문, 37298
- CONFIRM, http://wiki.rpath.com/wiki/Advisories:rPSA-2009-0121
- MISC, http://blog.cr0.org/2009/08/linux-null-pointer-dereference-due-to.html
- MISC, http://grsecurity.net/~spender/wunderbar_emporium.tgz
- CONFIRM, http://support.avaya.com/css/P8/documents/100067254
- SECUNIA 보안 권고문, 37471
- DEBIAN, DSA-1865
- CONFIRM 보안 권고문, http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.5
- CONFIRM 보안 권고문, http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.30.5
- CONFIRM, http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a..
- CONFIRM, https://issues.rpath.com/browse/RPL-3103
- CONFIRM, https://bugzilla.redhat.com/show_bug.cgi?id=516949
- MISC, http://zenthought.org/content/file/android-root-2009-08-16-source
- VUPEN 보안 권고문, ADV-2009-3316
- CONFIRM, http://www.vmware.com/security/advisories/VMSA-2009-0016.html
- CONFIRM 보안 권고문, http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-..
- BUGTRAQ, 20090813 Linux NULL pointer dereference due to incorrect proto_ops in..
- REDHAT, RHSA-2009:1233
- BUGTRAQ, 20090818 rPSA-2009-0121-1 kernel open-vm-tools
- MLIST, [oss-security] 20090814 CVE-2009-2692 kernel: uninit op in SOCKOPS_WRAP..
- BUGTRAQ, 20100625 VMSA-2010-0010 ESX 3.5 third party update for Service Consol..
- VUPEN 보안 권고문, 패치, ADV-2009-2272
|
| 취약 소프트웨어 |
-
Linux
Kernel
2.6.30.4
-
Linux
Kernel
2.6.30.2
-
Linux
Kernel
2.6.30.1
-
Linux
Kernel
2.6.30
rc7-git6
-
Linux
Kernel
2.6.30
rc6
-
Linux
Kernel
2.6.30
rc5
-
Linux
Kernel
2.6.30
rc3
-
Linux
Kernel
2.6.30
rc2
-
Linux
Kernel
2.6.30
rc1
-
Linux
Kernel
2.6.16.28
-
Linux
Kernel
2.6.16.27
-
Linux
Kernel
2.6.16.26
-
Linux
Kernel
2.6.16.25
-
Linux
Kernel
2.6.16.24
-
Linux
Kernel
2.6.16.23
-
Linux
Kernel
2.6.16.22
-
Linux
Kernel
2.6.16.21
-
Linux
Kernel
2.6.16.20
-
Linux
Kernel
2.6.16.2
-
Linux
Kernel
2.6.16.19
-
Linux
Kernel
2.6.16.18
-
Linux
Kernel
2.6.16.17
-
Linux
Kernel
2.6.16.16
-
Linux
Kernel
2.6.16.15
-
Linux
Kernel
2.6.16.14
-
Linux
Kernel
2.6.16.13
-
Linux
Kernel
2.6.16.12
-
Linux
Kernel
2.6.16.11
-
Linux
Kernel
2.6.16.10
-
Linux
Kernel
2.6.16.1
-
Linux
Kernel
2.6.16
-
Linux
Kernel
2.6.15.7
-
Linux
Kernel
2.6.15.6
-
Linux
Kernel
2.6.15.5
-
Linux
Kernel
2.6.15.4
-
Linux
Kernel
2.6.15.3
-
Linux
Kernel
2.6.15.2
-
Linux
Kernel
2.6.15.1
-
Linux
Kernel
2.6.15
-
Linux
Kernel
2.6.14.7
-
Linux
Kernel
2.6.14.6
-
Linux
Kernel
2.6.14.5
-
Linux
Kernel
2.6.14.4
-
Linux
Kernel
2.6.14.3
-
Linux
Kernel
2.6.14.2
-
Linux
Kernel
2.6.14.1
-
Linux
Kernel
2.6.14
-
Linux
Kernel
2.6.13.5
-
Linux
Kernel
2.6.13.4
-
Linux
Kernel
2.6.13.3
-
Linux
Kernel
2.6.13.2
-
Linux
Kernel
2.6.13.1
-
Linux
Kernel
2.6.13
-
Linux
Kernel
2.6.12.6
-
Linux
Kernel
2.6.12.5
-
Linux
Kernel
2.6.12.4
-
Linux
Kernel
2.6.12.3
-
Linux
Kernel
2.6.12.2
-
Linux
Kernel
2.6.12.1
-
Linux
Kernel
2.6.12
-
Linux
Kernel
2.6.11.9
-
Linux
Kernel
2.6.11.8
-
Linux
Kernel
2.6.11.7
-
Linux
Kernel
2.6.11.6
-
Linux
Kernel
2.6.11.5
-
Linux
Kernel
2.6.11.4
-
Linux
Kernel
2.6.11.3
-
Linux
Kernel
2.6.11.2
-
Linux
Kernel
2.6.11.12
-
Linux
Kernel
2.6.11.11
-
Linux
Kernel
2.6.11.10
-
Linux
Kernel
2.6.11.1
-
Linux
Kernel
2.6.11
-
Linux
Kernel
2.6.10
-
Linux
Kernel
2.6.1
-
Linux
Kernel
2.6.0
-
Linux
Kernel
2.6
-
Linux
Kernel
2.4.9
-
Linux
Kernel
2.4.8
-
Linux
Kernel
2.4.7
-
Linux
Kernel
2.4.6
-
Linux
Kernel
2.4.5
-
Linux
Kernel
2.4.4
-
Linux
Kernel
2.4.37.1
-
Linux
Kernel
2.4.37
-rc1
-
Linux
Kernel
2.4.36.8
-
Linux
Kernel
2.4.36.7
-
Linux
Kernel
2.4.36.6
-
Linux
Kernel
2.4.36.5
-
Linux
Kernel
2.4.36.4
-
Linux
Kernel
2.4.36.3
-
Linux
Kernel
2.4.36.2
-
Linux
Kernel
2.4.36.1
-
Linux
Kernel
2.4.36
-
Linux
Kernel
2.4.35.3
-
Linux
Kernel
2.4.34
-
Linux
Kernel
2.4.33.7
-
Linux
Kernel
2.4.33.5
-
Linux
Kernel
2.4.33.4
-
Linux
Kernel
2.4.33.3
-
Linux
Kernel
2.4.33.2
-
Linux
Kernel
2.4.33
p-re1
-
Linux
Kernel
2.4.32
-pre2
-
Linux
Kernel
2.4.32
-pre1
-
Linux
Kernel
2.4.31
-pre1
-
Linux
Kernel
2.4.30
rc3
-
Linux
Kernel
2.4.30
rc2
-
Linux
Kernel
2.4.29
-rc2
-
Linux
Kernel
2.6.24.7
-
Linux
Kernel
2.4.29
-rc1
-
Linux
Kernel
2.4.28
-
Linux
Kernel
2.4.27
:-pre5
-
Linux
Kernel
2.4.27
:-pre4
-
Linux
Kernel
2.4.27
:-pre3
-
Linux
Kernel
2.4.27
:-pre2
-
Linux
Kernel
2.4.27
:-pre1
-
Linux
Kernel
2.4.27
-
Linux
Kernel
2.4.26
-
Linux
Kernel
2.4.25
-
Linux
Kernel
2.4.24
:-ow1
-
Linux
Kernel
2.4.24
-
Linux
Kernel
2.4.23
:-pre9
-
Linux
Kernel
2.4.23
:-ow2
-
Linux
Kernel
2.4.23
-
Linux
Kernel
2.4.22
-
Linux
Kernel
2.4.21
:-pre7
-
Linux
Kernel
2.4.21
:-pre4
-
Linux
Kernel
2.4.21
:-pre1
-
Linux
Kernel
2.4.21
-
Linux
Kernel
2.4.20
-
Linux
Kernel
2.4.19
:-pre4
-
Linux
Kernel
2.4.19
:-pre3
-
Linux
Kernel
2.4.19
:-pre6
-
Linux
Kernel
2.4.19
:-pre5
-
Linux
Kernel
2.4.19
:-pre2
-
Linux
Kernel
2.4.19
:-pre1
-
Linux
Kernel
2.4.19
-
Linux
Kernel
2.4.18
:pre-8
-
Linux
Kernel
2.4.18
:pre-4
-
Linux
Kernel
2.4.18
:pre-5
-
Linux
Kernel
2.4.18
:pre-6
-
Linux
Kernel
2.4.18
:pre-7
-
Linux
Kernel
2.4.18
:pre-1
-
Linux
Kernel
2.4.18
:pre-3
-
Linux
Kernel
2.4.18
:pre-2
-
Linux
Kernel
2.4.18
:x86
-
Linux
Kernel
2.4.18
-
Linux
Kernel
2.4.17
-
Linux
Kernel
2.4.16
-
Linux
Kernel
2.4.15
-
Linux
Kernel
2.4.14
-
Linux
Kernel
2.4.13
-
Linux
Kernel
2.4.12
-
Linux
Kernel
2.4.11
-
Linux
Kernel
2.4.10
-
Linux
Kernel
2.6.25.15
|