Description
The IA32 system call emulation functionality in arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.36-rc4-git2 on the x86_64 platform does not zero extend the %eax register after the 32-bit entry path to ptrace is used, which allows local users to gain privileges by triggering an out-of-bounds access to the system call table using the %rax register. NOTE: this vulnerability exists because of a CVE-2007-4573 regression.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-3299 | The IA32 system call emulation functionality in arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.36-rc4-git2 on the x86_64 platform does not zero extend the %eax register after the 32-bit entry path to ptrace is used, which allows local users to gain privileges by triggering an out-of-bounds access to the system call table using the %rax register. NOTE: this vulnerability exists because of a CVE-2007-4573 regression. |
Ubuntu USN |
USN-988-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1041-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1074-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1074-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1083-1 | Linux kernel vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T03:03:18.920Z
Reserved: 2010-09-13T00:00:00.000Z
Link: CVE-2010-3301
No data.
Status : Modified
Published: 2010-09-22T19:00:03.323
Modified: 2026-04-29T01:13:23.040
Link: CVE-2010-3301
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN