Back to search
CVE-2009-0834
Published: Mar 6, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
The audit_syscall_entry function in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass certain syscall audit configurations via crafted syscalls, a related issue to CVE-2009-0342 and CVE-2009-0343.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
35390
third-party-advisory
x_refsource_SECUNIA
1022153
vdb-entry
x_refsource_SECTRACK
34962
third-party-advisory
x_refsource_SECUNIA
MDVSA-2009:118
vendor-advisory
x_refsource_MANDRIVA
SUSE-SA:2009:028
vendor-advisory
x_refsource_SUSE
37471
third-party-advisory
x_refsource_SECUNIA
RHSA-2009:0459
vendor-advisory
x_refsource_REDHAT
http://scary.beasts.org/security/CESA-2009-001.html
x_refsource_MISC
linux-kernel-auditsyscallentry-sec-bypass(49061)
vdb-entry
x_refsource_XF
http://www.vmware.com/security/advisories/VMSA-2009-0016.html
x_refsource_CONFIRM
[oss-security] 20090302 CVE request: kernel: x86-64: syscall-audit: 32/64 syscall hole
mailing-list
x_refsource_MLIST
DSA-1794
vendor-advisory
x_refsource_DEBIAN
20090516 rPSA-2009-0084-1 kernel
mailing-list
x_refsource_BUGTRAQ
SUSE-SA:2009:030
vendor-advisory
x_refsource_SUSE
USN-751-1
vendor-advisory
x_refsource_UBUNTU
35185
third-party-advisory
x_refsource_SECUNIA
35015
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:8508
vdb-entry
signature
x_refsource_OVAL
35011
third-party-advisory
x_refsource_SECUNIA
35120
third-party-advisory
x_refsource_SECUNIA
SUSE-SA:2009:031
vendor-advisory
x_refsource_SUSE
34084
third-party-advisory
x_refsource_SECUNIA
34981
third-party-advisory
x_refsource_SECUNIA
DSA-1800
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:9600
vdb-entry
signature
x_refsource_OVAL
34917
third-party-advisory
x_refsource_SECUNIA
DSA-1787
vendor-advisory
x_refsource_DEBIAN
[linux-kernel] 20090228 [PATCH 0/2] x86-64: 32/64 syscall arch holes
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=487990
x_refsource_CONFIRM
RHSA-2009:0473
vendor-advisory
x_refsource_REDHAT
http://wiki.rpath.com/Advisories:rPSA-2009-0084
x_refsource_CONFIRM
RHSA-2009:0451
vendor-advisory
x_refsource_REDHAT
[linux-kernel] 20090228 [PATCH 1/2] x86-64: syscall-audit: fix 32/64 syscall hole
mailing-list
x_refsource_MLIST
35121
third-party-advisory
x_refsource_SECUNIA
ADV-2009-3316
vdb-entry
x_refsource_VUPEN
33951
vdb-entry
x_refsource_BID
35394
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now