Back to search
CVE-2015-3339
Published: May 27, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Race condition in the prepare_binprm function in fs/exec.c in the Linux kernel before 3.19.6 allows local users to gain privileges by executing a setuid program at a time instant when a chown to root is in progress, and the ownership is changed but the setuid bit is not yet stripped.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
SUSE-SU-2015:1491
vendor-advisory
x_refsource_SUSE
1032412
vdb-entry
x_refsource_SECTRACK
SUSE-SU-2015:1489
vendor-advisory
x_refsource_SUSE
SUSE-SU-2015:1488
vendor-advisory
x_refsource_SUSE
FEDORA-2015-8518
vendor-advisory
x_refsource_FEDORA
https://bugzilla.redhat.com/show_bug.cgi?id=1214030
x_refsource_CONFIRM
DSA-3237
vendor-advisory
x_refsource_DEBIAN
FEDORA-2015-7736
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:1382
vendor-advisory
x_refsource_SUSE
[oss-security] 20150420 Re: Linux: chown() was racy relative to execve() - Linux kernel
mailing-list
x_refsource_MLIST
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.19.6
x_refsource_CONFIRM
SUSE-SU-2016:2074
vendor-advisory
x_refsource_SUSE
RHSA-2015:1272
vendor-advisory
x_refsource_REDHAT
SUSE-SU-2015:1487
vendor-advisory
x_refsource_SUSE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now