{"api_version":"1","generated_at":"2026-07-23T10:41:45+00:00","cve":"CVE-2009-0835","urls":{"html":"https://cve.report/CVE-2009-0835","api":"https://cve.report/api/cve/CVE-2009-0835.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2009-0835","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2009-0835"},"summary":{"title":"CVE-2009-0835","description":"The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform, when CONFIG_SECCOMP is enabled, does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass intended access restrictions via crafted syscalls that are misinterpreted as (a) stat or (b) chmod, a related issue to CVE-2009-0342 and CVE-2009-0343.","state":"PUBLISHED","assigner":"mitre","published_at":"2009-03-06 11:30:02","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-264","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"3.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:N","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/33948","name":"http://www.securityfocus.com/bid/33948","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Linux Kernel 'seccomp' System Call Security Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://scary.beasts.org/security/CESA-2009-004.html","name":"http://scary.beasts.org/security/CESA-2009-004.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"CESA-2009-004 - rev 1","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=linux-kernel&m=123579056530191&w=2","name":"http://marc.info/?l=linux-kernel&m=123579056530191&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'[PATCH 0/2] x86-64: 32/64 syscall arch holes' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=487255","name":"https://bugzilla.redhat.com/show_bug.cgi?id=487255","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Bug 487255 – CVE-2009-0835 kernel: x86-64: seccomp: 32/64 syscall hole","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/35394","name":"http://secunia.com/advisories/35394","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"SUSE update for kernel - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:118","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:118","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Support / Security / Advisories /  / MDVSA-2009:118 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=oss-security&m=123597627132485&w=2","name":"http://marc.info/?l=oss-security&m=123597627132485&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'[oss-security] CVE request: kernel: x86-64: seccomp: 32/64 syscall hole' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html","name":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE Security Announcement: Linux kernel (SUSE-SA:20","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/35390","name":"http://secunia.com/advisories/35390","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Security Advisory SA35390 - SUSE update for kernel - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/34786","name":"http://secunia.com/advisories/34786","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SUSE update for kernel - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/34917","name":"http://secunia.com/advisories/34917","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Red Hat update for kernel-rt - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html","name":"http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE Security Announcement: Linux kernel (SUSE-SA:20","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://scary.beasts.org/security/CESA-2009-001.html","name":"http://scary.beasts.org/security/CESA-2009-001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"CESA-2009-001 - rev 1","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.redhat.com/support/errata/RHSA-2009-0451.html","name":"http://www.redhat.com/support/errata/RHSA-2009-0451.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/35121","name":"http://secunia.com/advisories/35121","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Debian update for linux-2.6 - Secunia Advisories - Vulnerability Information - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/34084","name":"http://secunia.com/advisories/34084","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Linux Kernel 32bit/64bit System Call Security Bypass Weaknesses - Secunia Advisories - Vulnerability Information - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00007.html","name":"http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00007.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE Security Announcement: Linux kernel (SUSE-SA:20","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lkml.org/lkml/2009/2/28/23","name":"http://lkml.org/lkml/2009/2/28/23","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LKML: Roland McGrath: Re: [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html","name":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE Security Announcement: Linux kernel (SUSE-SA:20","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html","name":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security: Linux kernel minor \"seccomp\" vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2009/dsa-1800","name":"http://www.debian.org/security/2009/dsa-1800","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Debian -- Security Information -- DSA-1800-1 linux-2.6","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/usn-751-1","name":"http://www.ubuntu.com/usn/usn-751-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"USN-751-1: Linux kernel vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=linux-kernel&m=123579069630311&w=2","name":"http://marc.info/?l=linux-kernel&m=123579069630311&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"'[PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole' - MARC","mime":"text/x-diff","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/35185","name":"http://secunia.com/advisories/35185","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"SUSE update for kernel - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2009-0835","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2009-0835","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.1","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.10","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.11","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.12","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.2","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.3","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.4","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.5","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.6","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.7","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.8","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"835","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"2.6.25.9","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[{"cvename":"CVE-2009-0835","organization":"Red Hat","lastmodified":"2009-05-19","contributor":"Tomas Hoger","statementText":"This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 2.1, 3, 4, and 5. It was addressed in Red Hat Enterprise MRG via: https://rhn.redhat.com/errata/RHSA-2009-0451.html .","cve_year":"2009","cve_id":"835","crc32":"53044850"}],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T04:48:52.370Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"35390","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/35390"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html"},{"name":"34786","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/34786"},{"name":"MDVSA-2009:118","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:118"},{"name":"[oss-security] 20090302 CVE request: kernel: x86-64: seccomp: 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://marc.info/?l=oss-security&m=123597627132485&w=2"},{"name":"SUSE-SA:2009:028","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://scary.beasts.org/security/CESA-2009-001.html"},{"name":"SUSE-SA:2009:030","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html"},{"name":"USN-751-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/usn-751-1"},{"name":"33948","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/33948"},{"name":"35185","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/35185"},{"name":"[linux-kernel] 20090227 Re: [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lkml.org/lkml/2009/2/28/23"},{"name":"SUSE-SA:2009:031","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html"},{"name":"SUSE-SA:2009:021","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00007.html"},{"name":"34084","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/34084"},{"name":"DSA-1800","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2009/dsa-1800"},{"name":"34917","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/34917"},{"name":"[linux-kernel] 20090228 [PATCH 0/2] x86-64: 32/64 syscall arch holes","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://marc.info/?l=linux-kernel&m=123579056530191&w=2"},{"name":"[linux-kernel] 20090228 [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://marc.info/?l=linux-kernel&m=123579069630311&w=2"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://scary.beasts.org/security/CESA-2009-004.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=487255"},{"name":"RHSA-2009:0451","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2009-0451.html"},{"name":"35121","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/35121"},{"name":"35394","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/35394"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2009-02-28T00:00:00.000Z","descriptions":[{"lang":"en","value":"The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform, when CONFIG_SECCOMP is enabled, does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass intended access restrictions via crafted syscalls that are misinterpreted as (a) stat or (b) chmod, a related issue to CVE-2009-0342 and CVE-2009-0343."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2009-03-17T09:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"35390","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/35390"},{"tags":["x_refsource_MISC"],"url":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html"},{"name":"34786","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/34786"},{"name":"MDVSA-2009:118","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:118"},{"name":"[oss-security] 20090302 CVE request: kernel: x86-64: seccomp: 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST"],"url":"http://marc.info/?l=oss-security&m=123597627132485&w=2"},{"name":"SUSE-SA:2009:028","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html"},{"tags":["x_refsource_MISC"],"url":"http://scary.beasts.org/security/CESA-2009-001.html"},{"name":"SUSE-SA:2009:030","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html"},{"name":"USN-751-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/usn-751-1"},{"name":"33948","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/33948"},{"name":"35185","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/35185"},{"name":"[linux-kernel] 20090227 Re: [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lkml.org/lkml/2009/2/28/23"},{"name":"SUSE-SA:2009:031","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html"},{"name":"SUSE-SA:2009:021","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00007.html"},{"name":"34084","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/34084"},{"name":"DSA-1800","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2009/dsa-1800"},{"name":"34917","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/34917"},{"name":"[linux-kernel] 20090228 [PATCH 0/2] x86-64: 32/64 syscall arch holes","tags":["mailing-list","x_refsource_MLIST"],"url":"http://marc.info/?l=linux-kernel&m=123579056530191&w=2"},{"name":"[linux-kernel] 20090228 [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","tags":["mailing-list","x_refsource_MLIST"],"url":"http://marc.info/?l=linux-kernel&m=123579069630311&w=2"},{"tags":["x_refsource_MISC"],"url":"http://scary.beasts.org/security/CESA-2009-004.html"},{"tags":["x_refsource_MISC"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=487255"},{"name":"RHSA-2009:0451","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2009-0451.html"},{"name":"35121","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/35121"},{"name":"35394","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/35394"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2009-0835","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform, when CONFIG_SECCOMP is enabled, does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass intended access restrictions via crafted syscalls that are misinterpreted as (a) stat or (b) chmod, a related issue to CVE-2009-0342 and CVE-2009-0343."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"35390","refsource":"SECUNIA","url":"http://secunia.com/advisories/35390"},{"name":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html","refsource":"MISC","url":"http://scarybeastsecurity.blogspot.com/2009/02/linux-kernel-minor-seccomp.html"},{"name":"34786","refsource":"SECUNIA","url":"http://secunia.com/advisories/34786"},{"name":"MDVSA-2009:118","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:118"},{"name":"[oss-security] 20090302 CVE request: kernel: x86-64: seccomp: 32/64 syscall hole","refsource":"MLIST","url":"http://marc.info/?l=oss-security&m=123597627132485&w=2"},{"name":"SUSE-SA:2009:028","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00002.html"},{"name":"http://scary.beasts.org/security/CESA-2009-001.html","refsource":"MISC","url":"http://scary.beasts.org/security/CESA-2009-001.html"},{"name":"SUSE-SA:2009:030","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html"},{"name":"USN-751-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/usn-751-1"},{"name":"33948","refsource":"BID","url":"http://www.securityfocus.com/bid/33948"},{"name":"35185","refsource":"SECUNIA","url":"http://secunia.com/advisories/35185"},{"name":"[linux-kernel] 20090227 Re: [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","refsource":"MLIST","url":"http://lkml.org/lkml/2009/2/28/23"},{"name":"SUSE-SA:2009:031","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html"},{"name":"SUSE-SA:2009:021","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00007.html"},{"name":"34084","refsource":"SECUNIA","url":"http://secunia.com/advisories/34084"},{"name":"DSA-1800","refsource":"DEBIAN","url":"http://www.debian.org/security/2009/dsa-1800"},{"name":"34917","refsource":"SECUNIA","url":"http://secunia.com/advisories/34917"},{"name":"[linux-kernel] 20090228 [PATCH 0/2] x86-64: 32/64 syscall arch holes","refsource":"MLIST","url":"http://marc.info/?l=linux-kernel&m=123579056530191&w=2"},{"name":"[linux-kernel] 20090228 [PATCH 2/2] x86-64: seccomp: fix 32/64 syscall hole","refsource":"MLIST","url":"http://marc.info/?l=linux-kernel&m=123579069630311&w=2"},{"name":"http://scary.beasts.org/security/CESA-2009-004.html","refsource":"MISC","url":"http://scary.beasts.org/security/CESA-2009-004.html"},{"name":"https://bugzilla.redhat.com/show_bug.cgi?id=487255","refsource":"MISC","url":"https://bugzilla.redhat.com/show_bug.cgi?id=487255"},{"name":"RHSA-2009:0451","refsource":"REDHAT","url":"http://www.redhat.com/support/errata/RHSA-2009-0451.html"},{"name":"35121","refsource":"SECUNIA","url":"http://secunia.com/advisories/35121"},{"name":"35394","refsource":"SECUNIA","url":"http://secunia.com/advisories/35394"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2009-0835","datePublished":"2009-03-06T11:00:00.000Z","dateReserved":"2009-03-06T00:00:00.000Z","dateUpdated":"2024-08-07T04:48:52.370Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2009-03-06 11:30:02","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-264","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25:*:x86_64:*:*:*:*:*","matchCriteriaId":"6ED1BAE4-A6D3-49A1-BCAD-1E514D42F609"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.1:*:x86_64:*:*:*:*:*","matchCriteriaId":"4F7C4DFF-616C-497D-9BAB-67C2E21BC21D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.2:*:x86_64:*:*:*:*:*","matchCriteriaId":"E6EBBFE8-2332-45CE-93F8-6815C2AE5D17"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.3:*:x86_64:*:*:*:*:*","matchCriteriaId":"388414A1-C9B4-41BA-AD35-6501A463A095"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.4:*:x86_64:*:*:*:*:*","matchCriteriaId":"FDBA01DD-C129-48F1-800B-838418F4A4A4"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.5:*:x86_64:*:*:*:*:*","matchCriteriaId":"185F1EF8-04EB-43ED-B909-8BDF60F23E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.6:*:x86_64:*:*:*:*:*","matchCriteriaId":"D9D4BCAD-B3CD-4FA1-A833-0D7D40289E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.7:*:x86_64:*:*:*:*:*","matchCriteriaId":"3483FAFA-353C-498F-AF68-8F5B84A0F30D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.8:*:x86_64:*:*:*:*:*","matchCriteriaId":"B3D5AEA5-210B-4E9F-8D9C-C25B84F15C75"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.9:*:x86_64:*:*:*:*:*","matchCriteriaId":"6B11A9E1-9D90-46DC-81B5-17A137205AB3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.10:*:x86_64:*:*:*:*:*","matchCriteriaId":"07EEC559-9240-46BE-9057-0F17D1F61F99"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.11:*:x86_64:*:*:*:*:*","matchCriteriaId":"BBBC127F-D67E-43FE-BCFE-606C200084F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.25.12:*:x86_64:*:*:*:*:*","matchCriteriaId":"42B18945-EE09-4E6B-8C11-E382E5F8F850"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2009","CveId":"835","Ordinal":"1","Title":"CVE-2009-0835","CVE":"CVE-2009-0835","Year":"2009"},"notes":[{"CveYear":"2009","CveId":"835","Ordinal":"1","NoteData":"The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform, when CONFIG_SECCOMP is enabled, does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass intended access restrictions via crafted syscalls that are misinterpreted as (a) stat or (b) chmod, a related issue to CVE-2009-0342 and CVE-2009-0343.","Type":"Description","Title":"CVE-2009-0835"},{"CveYear":"2009","CveId":"835","Ordinal":"2","NoteData":"2009-03-06","Type":"Other","Title":"Published"},{"CveYear":"2009","CveId":"835","Ordinal":"3","NoteData":"2009-03-17","Type":"Other","Title":"Modified"}]}}}