PoC Index

CVE-2009-1527

MEDIUM 6.9EPSS 0.5%

Race condition in the ptrace_attach function in kernel/ptrace.c in the Linux kernel before 2.6.30-rc4 allows local users to gain privileges via a PTRACE_ATTACH ptrace call during an exec system call that is launching a setuid application, related to locking an incorrect cred_exec_mutex object.

CVSS v2.0
6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
EPSS
0.49% chance of exploitation in the next 30 days, 40th percentile
Published
2009-05-05
Updated
2024-08-07

ExploitDB entries (1)

References

Related