Bug 157454 - CAN-2005-1263 Linux kernel ELF core dump privilege elevation
CAN-2005-1263 Linux kernel ELF core dump privilege elevation
Status: CLOSED ERRATA
Product: Fedora
Classification: Fedora
Component: kernel (Show other bugs)
3
All Linux
medium Severity medium
: ---
: ---
Assigned To: Dave Jones
Brian Brock
: Security
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2005-05-11 14:35 EDT by Mark J. Cox (Product Security)
Modified: 2015-01-04 17:19 EST (History)
4 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2005-05-23 14:23:42 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:


Attachments (Terms of Use)
Proposed patch from Greg KH (not backported) (1.74 KB, patch)
2005-05-11 14:35 EDT, Mark J. Cox (Product Security)
no flags Details | Diff

  None (edit)
Description Mark J. Cox (Product Security) 2005-05-11 14:35:42 EDT
+++ This bug was initially created as a clone of Bug #157450 +++

"A locally exploitable flaw has been found in the Linux ELF binary format
loader's core dump  function  that  allows  local  users  to  gain  root
privileges and also execute arbitrary code at kernel privilege level."

For the full description see
http://www.securityfocus.com/archive/1/397966/2005-05-08/2005-05-14/0
Comment 1 Mark J. Cox (Product Security) 2005-05-11 14:35:42 EDT
Created attachment 114255 [details]
Proposed patch from Greg KH (not backported)
Comment 2 Dave Jones 2005-05-17 19:56:12 EDT
rebased to 2.6.11.10 for latest update, will go live soon.
Comment 5 Mark J. Cox (Product Security) 2005-05-23 14:23:42 EDT
Fixed by FEDORA-2005-392

Note You need to log in before you can comment on or make changes to this bug.