The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allows local users to gain privileges via a recvmmsg system call with a crafted timeout pointer parameter.
2014-02-06T22:55:03.327
2025-04-11T00:51:21.963
Deferred
CVSSv2: 6.9 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.4.79 | Yes |
Operating System | linux | linux_kernel | < 3.10.29 | Yes |
Operating System | linux | linux_kernel | < 3.12.10 | Yes |
Operating System | linux | linux_kernel | < 3.13.2 | Yes |
Operating System | opensuse | opensuse | 12.3 | Yes |