ID:1850 - Exploit for Privilege escalation in Linux kernel - CVE-2013-6282

 
Main Vulnerability Database Exploits ID:1850 - Exploit for Privilege escalation in Linux kernel - CVE-2013-6282

ID:1850 - Exploit for Privilege escalation in Linux kernel - CVE-2013-6282

Published: March 18, 2020


Vulnerability identifier: #VU4645
Vulnerability risk: Critical
CVE-ID: CVE-2013-6282
CWE-ID: CWE-20
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local attacker to obtain elevated privileges on the target system.

The weakness exists due to an error in the put_user/get_user kernel API. A local attacker can use a malicious application to read and write kernel memory and gain kernel privileges on the system.

Successful exploitation of the vulnerability results in arbitrary code execution on the vulnerable system.

Note: the vulnerability was being actively exploited.

Remediation

Update to version 3.5.5.