CVE-2014-7826 PUBLISHED

kernel/trace/trace_syscalls.c in the Linux kernel through 3.17.2 does not properly handle private syscall numbers during use of the ftrace subsystem, which allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via a crafted application.

EPSS 0.04% · 13.2th percentile

Risk Scores

EPSS Score
0.04%
13.2th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-utopic0, 3.16.0-25.33~14.04.2
Ubuntu:14.04:LTSlinux3.12.0-1.3, 3.12.0-2.5, 3.12.0-2.7

Timeline

References

Open in Interactive Console →