PT-2006-2845 · Linux+1 · Linux Kernel+1
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 2.6.16 and earlier
Description
The issue is related to certain modifications in the Linux kernel that do not properly add Linux Security Modules (LSM) file permission hooks to the
readv and writev functions. This might allow attackers to bypass intended access restrictions.Recommendations
For Linux kernel versions 2.6.16 and earlier, consider applying modifications to add the appropriate LSM file permission hooks to the
readv and writev functions to prevent bypassing of access restrictions.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel
Red Hat