CVE Database
/

CVE-2015-3339

Back to search

CVE-2015-3339

Published: May 27, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

Race condition in the prepare_binprm function in fs/exec.c in the Linux kernel before 3.19.6 allows local users to gain privileges by executing a setuid program at a time instant when a chown to root is in progress, and the ownership is changed but the setuid bit is not yet stripped.

VendorProductVersions

n/a

n/a

affected
n/a

References

SUSE-SU-2015:1491
vendor-advisory
x_refsource_SUSE
1032412
vdb-entry
x_refsource_SECTRACK
SUSE-SU-2015:1489
vendor-advisory
x_refsource_SUSE
SUSE-SU-2015:1488
vendor-advisory
x_refsource_SUSE
FEDORA-2015-8518
vendor-advisory
x_refsource_FEDORA
DSA-3237
vendor-advisory
x_refsource_DEBIAN
FEDORA-2015-7736
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:1382
vendor-advisory
x_refsource_SUSE
SUSE-SU-2016:2074
vendor-advisory
x_refsource_SUSE
RHSA-2015:1272
vendor-advisory
x_refsource_REDHAT
SUSE-SU-2015:1487
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now