Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v6 - Exploits Update (Thu Sep 21 2006)

Linux suid_dumpable exploit

Exploits/Local  [Linux]




• Thu Sep 21 2006
The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a local user to cause a denial of service (disk consumption) and possibly gain privileges via the PR_SET_DUMPABLE argument of the prctl function and a program that causes a core dump file to be created in a directory for which the user does not have permissions.

Exploits Vulnerabiltiy: CVE-2006-2451



< Back to Product Updates