Back to search
CVE-2014-3153
Published: Jun 7, 2014
Modified: Oct 22, 2025
PUBLISHED
Description
The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modification.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
67906
vdb-entry
x_refsource_BID
openSUSE-SU-2014:0878
vendor-advisory
x_refsource_SUSE
[oss-security] 20140605 Re: Linux kernel futex local privilege escalation (CVE-2014-3153)
mailing-list
x_refsource_MLIST
59029
third-party-advisory
x_refsource_SECUNIA
DSA-2949
vendor-advisory
x_refsource_DEBIAN
SUSE-SU-2014:1316
vendor-advisory
x_refsource_SUSE
SUSE-SU-2014:0796
vendor-advisory
x_refsource_SUSE
59262
third-party-advisory
x_refsource_SECUNIA
58990
third-party-advisory
x_refsource_SECUNIA
http://linux.oracle.com/errata/ELSA-2014-3037.html
x_refsource_CONFIRM
59153
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20140606 Re: Linux kernel futex local privilege escalation (CVE-2014-3153)
mailing-list
x_refsource_MLIST
59309
third-party-advisory
x_refsource_SECUNIA
1030451
vdb-entry
x_refsource_SECTRACK
http://linux.oracle.com/errata/ELSA-2014-0771.html
x_refsource_CONFIRM
SUSE-SU-2014:0775
vendor-advisory
x_refsource_SUSE
RHSA-2014:0800
vendor-advisory
x_refsource_REDHAT
USN-2237-1
vendor-advisory
x_refsource_UBUNTU
SUSE-SU-2014:1319
vendor-advisory
x_refsource_SUSE
http://linux.oracle.com/errata/ELSA-2014-3039.html
x_refsource_CONFIRM
58500
third-party-advisory
x_refsource_SECUNIA
USN-2240-1
vendor-advisory
x_refsource_UBUNTU
https://bugzilla.redhat.com/show_bug.cgi?id=1103626
x_refsource_CONFIRM
59386
third-party-advisory
x_refsource_SECUNIA
35370
exploit
x_refsource_EXPLOIT-DB
59599
third-party-advisory
x_refsource_SECUNIA
SUSE-SU-2014:0837
vendor-advisory
x_refsource_SUSE
[oss-security] 20140605 Linux kernel futex local privilege escalation (CVE-2014-3153)
mailing-list
x_refsource_MLIST
59092
third-party-advisory
x_refsource_SECUNIA
http://linux.oracle.com/errata/ELSA-2014-3038.html
x_refsource_CONFIRM
[oss-security] 20210201 Re: Linux Kernel: local priv escalation via futexes
mailing-list
x_refsource_MLIST
https://www.openwall.com/lists/oss-security/2021/02/01/4
x_refsource_MISC
https://github.com/elongl/CVE-2014-3153
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now