Linux Kernel ASLR Security Bypass Weakness
BID:71494
Info
Linux Kernel ASLR Security Bypass Weakness
| Bugtraq ID: | 71494 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 04 2014 12:00AM |
| Updated: | Dec 10 2014 12:58AM |
| Credit: | Hector Marco |
| Vulnerable: |
Linux kernel |
| Not Vulnerable: | |
Discussion
Linux Kernel ASLR Security Bypass Weakness
The Linux kernel is prone to a security-bypass weakness.
This weakness may allow attackers to bypass Address Space Layout Randomization (ASLR) protection mechanisms of applications. This may aid in further attacks that may lead to arbitrary code execution.
The Linux kernel is prone to a security-bypass weakness.
This weakness may allow attackers to bypass Address Space Layout Randomization (ASLR) protection mechanisms of applications. This may aid in further attacks that may lead to arbitrary code execution.
Exploit / POC
Linux Kernel ASLR Security Bypass Weakness
The researcher who found the issue has created a proof-of-concept. Please see the references for information.
The researcher who found the issue has created a proof-of-concept. Please see the references for information.
Solution / Fix
Linux Kernel ASLR Security Bypass Weakness
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].