ID:10826 - Exploit for Improper privilege management in Linux kernel - CVE-2001-1384

 
Main Vulnerability Database Exploits ID:10826 - Exploit for Improper privilege management in Linux kernel - CVE-2001-1384

ID:10826 - Exploit for Improper privilege management in Linux kernel - CVE-2001-1384

Published: November 6, 2024


Vulnerability identifier: #VU99984
Vulnerability risk: Low
CVE-ID: CVE-2001-1384
CWE-ID: CWE-269
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to execute arbitrary code.

ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptrace on a setuid or setgid program that itself calls an unprivileged program, such as newgrp.


Remediation

Install update from vendor's repository.