Linux kernel 2.6 before 2.6.11 does not restrict access to the N_MOUSE line discipline for a TTY, which allows local users to gain privileges by injecting mouse or keyboard events into other user sessions.
CVSS Details
- CVSS 3.1 Base Score: 7.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-2.6.8.1-5-amd64-k8-smpUpgrade linux-image-2.6.8.1-5-power3Upgrade linux-image-2.6.8.1-5-k7-smpUpgrade linux-image-2.6.8.1-5-686-smpUpgrade linux-image-2.6.8.1-5-amd64-genericUpgrade linux-image-2.6.8.1-5-amd64-k8Upgrade linux-image-2.6.8.1-5-power4-smpUpgrade linux-image-2.6.8.1-5-amd64-xeon | Nov 8, 2024 | May 2, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub