CVE-2007-3848

Linux kernel <2.4.35 - Privilege Escalation

Title source: llm

Description

Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SET_PDEATHSIG).

References (42)

... and 22 more

Scores

EPSS 0.0008
EPSS Percentile 23.9%

Classification

Status draft

Affected Products (1)

linux/linux_kernel < 2.4.35

Timeline

Published Aug 14, 2007
Tracked Since Feb 18, 2026