Back to search
CVE-2014-4943
Published: Jul 19, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure differences between an l2tp socket and an inet socket.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
36267
exploit
x_refsource_EXPLOIT-DB
http://linux.oracle.com/errata/ELSA-2014-3047.html
x_refsource_CONFIRM
SUSE-SU-2014:1316
vendor-advisory
x_refsource_SUSE
1030610
vdb-entry
x_refsource_SECTRACK
60220
third-party-advisory
x_refsource_SECUNIA
59790
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:1025
vendor-advisory
x_refsource_REDHAT
SUSE-SU-2014:1319
vendor-advisory
x_refsource_SUSE
SUSE-SU-2015:0481
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2015:0566
vendor-advisory
x_refsource_SUSE
https://bugzilla.redhat.com/show_bug.cgi?id=1119458
x_refsource_CONFIRM
http://linux.oracle.com/errata/ELSA-2014-0924.html
x_refsource_CONFIRM
60393
third-party-advisory
x_refsource_SECUNIA
60380
third-party-advisory
x_refsource_SECUNIA
http://linux.oracle.com/errata/ELSA-2014-3048.html
x_refsource_CONFIRM
linux-kernel-cve20144943-priv-esc(94665)
vdb-entry
x_refsource_XF
[oss-security] 20140716 CVE-2014-4943: Linux privilege escalation in ppp over l2tp sockets
mailing-list
x_refsource_MLIST
60011
third-party-advisory
x_refsource_SECUNIA
DSA-2992
vendor-advisory
x_refsource_DEBIAN
109277
vdb-entry
x_refsource_OSVDB
60071
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now