CVE-2014-0038
MEDIUM 6.9EPSS 35.5%
The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allows local users to gain privileges via a recvmmsg system call with a crafted timeout pointer parameter.
- CVSS v2.0
- 6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C - EPSS
- 35.45% chance of exploitation in the next 30 days, 98th percentile
- Published
- 2014-02-06
- Updated
- 2024-08-06
Proof-of-concept exploits (4)
- http://www.exploit-db.com/exploits/31347
- http://www.exploit-db.com/exploits/31346
- Shenal01/SNP_CVE_RESEARCH0★ · 2023-10-31
- saelo/cve-2014-0038199★ · 2014-04-18
Metasploit modules (1)
ExploitDB entries (4)
- https://www.exploit-db.com/exploits/40503
- https://www.exploit-db.com/exploits/31347
- https://www.exploit-db.com/exploits/31346
- https://www.exploit-db.com/exploits/31305