CVE
- Id
- 80616
- CVE No.
- CVE-2015-3339
- Status
- Candidate
- Description
- Race condition in the prepare_binprm function in fs/exec.c in the Linux kernel before 3.19.6 allows local users to gain privileges by executing a setuid program at a time instant when a chown to root is in progress, and the ownership is changed but the setuid bit is not yet stripped.
- Phase
- Assigned (20150420)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
7139 | JVNDB-2015-002459 | Drupal 用 Path Breadcrumbs モジュールにおけるアクセス制限を回避される脆弱性 | Drupal 用 Path Breadcrumbs モジュールには、アクセス制限を回避され、重要なノードタイトルを取得される脆弱性が存在します。 | CVE-2015-3391 | 80616 | 5 | http://jvndb.jvn.jp/ja/contents/2015/JVNDB-2015-002459.html | View |