Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The sysrq_sysctl_handler function in kernel/sysctl.c in the Linux kernel before 2.6.39 does not require the CAP_SYS_ADMIN capability to modify the dmesg_restrict value, which allows local users to bypass intended access restrictions and read the kernel ring buffer by leveraging root privileges, as demonstrated by a root user in a Linux Containers (aka LXC) environment.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux Kernel ‘sysrq_sysctl_handler’ 函数安全漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 2.6.39之前版本的kernel/sysctl.c中的sysrq_sysctl_handler函数中存在漏洞,该漏洞源于未要求以CAP_SYS_ADMIN权能来修改dmesg_restrict值。本地用户可利用root权限绕过预期访问限制进而读取内核环形缓冲区。该漏洞已被Linux Containers (也称LXC)
CVSS Information
N/A
Vulnerability Type
N/A