Linux VServer 1.27 and earlier, 1.3.9 and earlier, and 1.9.1 and earlier shares /proc permissions across all virtual and host servers, which allows local users with the ability to set permissions in /proc to obtain system information or cause a denial of service on other virtual servers or the host server.
2004-12-31T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 3.6 (LOW)
AV:L/AC:L/Au:N/C:P/I:P/A:N
3.9
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | vserver | linux-vserver | 1.3.0 | Yes |
Application | vserver | linux-vserver | 1.3.1 | Yes |
Application | vserver | linux-vserver | 1.3.2 | Yes |
Application | vserver | linux-vserver | 1.3.3 | Yes |
Application | vserver | linux-vserver | 1.3.4 | Yes |
Application | vserver | linux-vserver | 1.3.5 | Yes |
Application | vserver | linux-vserver | 1.3.6 | Yes |
Application | vserver | linux-vserver | 1.3.7 | Yes |
Application | vserver | linux-vserver | 1.3.8 | Yes |
Application | vserver | linux-vserver | 1.3.9 | Yes |
Application | vserver | linux-vserver | 1.9.1 | Yes |
Application | vserver | linux-vserver | 1.20 | Yes |
Application | vserver | linux-vserver | 1.21 | Yes |
Application | vserver | linux-vserver | 1.22 | Yes |
Application | vserver | linux-vserver | 1.23 | Yes |
Application | vserver | linux-vserver | 1.24 | Yes |
Application | vserver | linux-vserver | 1.25 | Yes |
Application | vserver | linux-vserver | 1.26 | Yes |
Application | vserver | linux-vserver | 1.27 | Yes |