CVE-2011-0006

The ima_lsm_rule_init function in security/integrity/ima/ima_policy.c in the Linux kernel before 2.6.37, when the Linux Security Modules (LSM) framework is disabled, allows local users to bypass Integrity Measurement Architecture (IMA) rules in opportunistic circumstances by leveraging an administrator's addition of an IMA rule for LSM.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.36.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.36.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.36.3:*:*:*:*:*:*:*

History

21 Nov 2024, 01:23

Type Values Removed Values Added
References () http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37 - () http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37 -
References () http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=867c20265459d30a01b021a9c1e81fb4c5832aa9 - () http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=867c20265459d30a01b021a9c1e81fb4c5832aa9 -
References () http://www.openwall.com/lists/oss-security/2011/01/06/18 - () http://www.openwall.com/lists/oss-security/2011/01/06/18 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=667912 - () https://bugzilla.redhat.com/show_bug.cgi?id=667912 -
References () https://github.com/torvalds/linux/commit/867c20265459d30a01b021a9c1e81fb4c5832aa9 - Patch () https://github.com/torvalds/linux/commit/867c20265459d30a01b021a9c1e81fb4c5832aa9 - Patch

Information

Published : 2012-06-21 23:55

Updated : 2024-11-21 01:23


NVD link : CVE-2011-0006

Mitre link : CVE-2011-0006

CVE.ORG link : CVE-2011-0006


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-264

Permissions, Privileges, and Access Controls