VDB
CVE-2010-4170
CVE-2010-4170
PUBLISHED
Reported by redhat · Published December 7, 2010
The staprun runtime tool in SystemTap 1.3 does not properly clear the environment before executing modprobe, which allows local users to gain privileges by setting the MODPROBE_OPTIONS environment variable to specify a malicious configuration file.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | *, n/a |
Timeline
- Nov 27, 2010 PoC Published
- Dec 7, 2010 CVE Published
- Apr 19, 2019 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
References
- systemtap-staprun-priv-escalation(63344) vdb-entryx_refsource_XF
- [systemtap] 20101117 important systemtap security fix mailing-listx_refsource_MLIST
- FEDORA-2010-17873 vendor-advisoryx_refsource_FEDORA
- 15620 exploitx_refsource_EXPLOIT-DB
- 42263 third-party-advisoryx_refsource_SECUNIA
- FEDORA-2010-17865 vendor-advisoryx_refsource_FEDORA
- x_refsource_CONFIRM
- RHSA-2010:0894 vendor-advisoryx_refsource_REDHAT
- RHSA-2010:0895 vendor-advisoryx_refsource_REDHAT
- 42306 third-party-advisoryx_refsource_SECUNIA
- 44914 vdb-entryx_refsource_BID
- DSA-2348 vendor-advisoryx_refsource_DEBIAN
- 1024754 vdb-entryx_refsource_SECTRACK
- 46920 third-party-advisoryx_refsource_SECUNIA
- 42256 third-party-advisoryx_refsource_SECUNIA
- 42318 third-party-advisoryx_refsource_SECUNIA
- FEDORA-2010-17868 vendor-advisoryx_refsource_FEDORA
- x_refsource_MISC
- 46730 exploitx_refsource_EXPLOIT-DB