Lawrence Livermore National Laboratory msr-safe v1.1.0 is affected by: Incorrect Access Control. The impact is: An attacker could modify model specific registers. The component is: ioctl handling. The attack vector is: An attacker could exploit a bug in ioctl interface whitelist checking, in order to write to model specific registers, normally a function reserved for the root user. The fixed version is: v1.2.0.
References
Link | Resource |
---|---|
https://github.com/LLNL/msr-safe/compare/v1.1.0...v1.2.0 | Patch Third Party Advisory |
https://www.tldp.org/LDP/lkmpg/2.4/html/x856.html | Exploit Third Party Advisory |
https://github.com/LLNL/msr-safe/compare/v1.1.0...v1.2.0 | Patch Third Party Advisory |
https://www.tldp.org/LDP/lkmpg/2.4/html/x856.html | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 04:17
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/LLNL/msr-safe/compare/v1.1.0...v1.2.0 - Patch, Third Party Advisory | |
References | () https://www.tldp.org/LDP/lkmpg/2.4/html/x856.html - Exploit, Third Party Advisory |
Information
Published : 2019-07-18 14:15
Updated : 2024-11-21 04:17
NVD link : CVE-2019-1010066
Mitre link : CVE-2019-1010066
CVE.ORG link : CVE-2019-1010066
JSON object : View
Products Affected
llnl
- model_specific_registers-safe