CVE-2014-5045 - CERT CVE
ID CVE-2014-5045
Sažetak The mountpoint_last function in fs/namei.c in the Linux kernel before 3.15.8 does not properly maintain a certain reference count during attempts to use the umount system call in conjunction with a symlink, which allows local users to cause a denial of service (memory consumption or use-after-free) or possibly have unspecified other impact via the umount program.
Reference
CVSS
Base: 6.2
Impact: 10.0
Exploitability:1.9
Pristup
VektorSloženostAutentikacija
LOCAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:L/AC:H/Au:N/C:C/I:C/A:C
Zadnje važnije ažuriranje 07-11-2023 - 02:20
Objavljeno 01-08-2014 - 11:13