Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2011-2503
Description:The insert_module function in runtime/staprun/staprun_funcs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate a module when loading it, which allows local users to gain privileges via a race condition between the signature validation and the module initialization.
Test IDs: 1.3.6.1.4.1.25623.1.0.70042   1.3.6.1.4.1.25623.1.0.70045   1.3.6.1.4.1.25623.1.0.70434   1.3.6.1.4.1.25623.1.0.880982   1.3.6.1.4.1.25623.1.0.122115   1.3.6.1.4.1.25623.1.0.70564   1.3.6.1.4.1.25623.1.0.870459   1.3.6.1.4.1.25623.1.0.881357   1.3.6.1.4.1.25623.1.0.70019  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2011-2503
Debian Security Information: DSA-2348 (Google Search)
http://www.debian.org/security/2011/dsa-2348
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2503
http://secunia.com/advisories/45377
http://secunia.com/advisories/46920




© 1998-2025 E-Soft Inc. All rights reserved.