The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows local users to gain privileges via PID spoofing.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-09-25 03:31
Updated : 2023-02-12 20:46
NVD link : CVE-2013-4300
Mitre link : CVE-2013-4300
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
linux
- linux_kernel