imPC@ndo IT

Tracker / CVE-2009-1185

CVE-2009-1185

High 7.2

udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
fedoraproject fedora
juniper ctpview
juniper ctpview · … → 7.1
opensuse opensuse
suse linux_enterprise_debuginfo
suse linux_enterprise_desktop
suse linux_enterprise_server
udev_project udev · … → 141

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References