UBUNTU-CVE-2013-2094
Dashboard / Vulnerabilities / UBUNTU-CVE-2013-2094
UBUNTU-CVE-2013-2094
Summary:
Details: The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.
References: https://ubuntu.com/security/CVE-2013-2094, https://ubuntu.com/security/notices/USN-1825-1, https://ubuntu.com/security/notices/USN-1826-1, https://ubuntu.com/security/notices/USN-1827-1, https://ubuntu.com/security/notices/USN-1828-1, https://ubuntu.com/security/notices/USN-1836-1, https://ubuntu.com/security/notices/USN-1839-1, https://ubuntu.com/security/notices/USN-1838-1, https://ubuntu.com/security/notices/USN-1849-1, https://www.cve.org/CVERecord?id=CVE-2013-2094, https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
