Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SET_PDEATHSIG).
References
Configurations
Information
Published : 2007-08-14 10:17
Updated : 2018-10-15 14:31
NVD link : CVE-2007-3848
Mitre link : CVE-2007-3848
JSON object : View
CWE
Products Affected
linux
- linux_kernel