CVE-2006-3626
CVE-2006-3626
Race condition in Linux kernel 2.6.17.4 and earlier allows local users to gain root privileges by using prctl with PR_SET_DUMPABLE in a way that causes /proc/self/environ to become setuid root.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.17.5http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/047907.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=198973http://secunia.com/advisories/21041http://secunia.com/advisories/21057http://secunia.com/advisories/21073http://secunia.com/advisories/21119http://secunia.com/advisories/21123http://secunia.com/advisories/21179http://secunia.com/advisories/21498http://secunia.com/advisories/21605http://secunia.com/advisories/22174