Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SET_PDEATHSIG).
References
Configurations
History
No history.
Information
Published : 2007-08-14 17:17
Updated : 2018-10-15 21:31
NVD link : CVE-2007-3848
Mitre link : CVE-2007-3848
CVE.ORG link : CVE-2007-3848
JSON object : View
Products Affected
linux
- linux_kernel
CWE