Upstream information
Description
Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T CPUs, which reports an exception in the SYSRET instead of the next instruction, which causes the kernel exception handler to run on the user stack with the wrong GS.SUSE information
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
National Vulnerability Database | |
---|---|
Base Score | 4.9 |
Vector | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Access Vector | Local |
Access Complexity | Low |
Authentication | None |
Confidentiality Impact | None |
Integrity Impact | None |
Availability Impact | Complete |
SUSE Security Advisories:
- SUSE-SA:2006:028, published Wed, 31 May 2006 18:00:00 +0000
- SUSE-SA:2006:042, published Wed, 26 Jul 2006 14:00:00 +0000
- SUSE-SA:2006:047, published Fri, 11 Aug 2006 17:00:00 +0000
SUSE Timeline for this CVE
CVE page created: Fri Jun 28 01:40:19 2013CVE page last modified: Fri Dec 8 16:15:12 2023