PT-2019-13094 · Toaruos · Toaruos

CVE-2019-13047

·

Publicado

2019-06-29

·

Atualizado

2022-09-29

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ToaruOS versions prior to 1.10.10
Description The issue is related to incorrect access control in the sys sysfunc case 9 for TOARU SYS FUNC SETHEAP, allowing arbitrary kernel pages to be mapped into user land. This can lead to root access.
Recommendations For versions prior to 1.10.10, update to version 1.10.10 or later to resolve the issue.

Exploit

Correção

Missing Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-13047

Produtos afetados

Toaruos