Race condition in the SystemTap stap tool 0.0.20080705 and 0.0.20090314 allows local users in the stapusr group to insert arbitrary SystemTap kernel modules and gain privileges via unknown vectors.
CVSS Details
- CVSS 3.1 Base Score: 7
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade systemtap-runtimeUpgrade systemtapUpgrade systemtap-testsuite | Dec 1, 2016 | Mar 25, 2009 |
| Debian | — | Upgrade systemtap | Jul 30, 2024 | Mar 25, 2009 |
| Oracle_linux | — | Upgrade systemtap-serverUpgrade systemtap-testsuiteUpgrade systemtap-runtimeUpgrade systemtapUpgrade systemtap-client | Oct 16, 2024 | Mar 25, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub