CVE-2008-0163

Linux kernel 2.6 - Unauthenticated Resource Access via Symlink Attack in /proc

Title source: llm
STIX 2.1

Description

Linux kernel 2.6, when using vservers, allows local users to access resources of other vservers via a symlink attack in /proc.

References (5)

Core 5
Core References
Patch vendor-advisory x_refsource_debian
http://www.debian.org/security/2008/dsa-1494
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28875
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/40486
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27798
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27704

Scores

EPSS 0.0030
EPSS Percentile 21.9%

Details

CWE
CWE-59
Status published
Products (1)
linux/linux_kernel 2.6.0
Published Feb 12, 2008
Tracked Since Feb 18, 2026