CVE-2010-4347

Linux Kernel < 2.6.36.2 - Improper Privilege Management

Title source: rule

Description

The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain privileges by placing a custom ACPI method in the ACPI interpreter tables, related to the acpi_debugfs_init function in drivers/acpi/debugfs.c.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Jon Oberheide · clocallinux
https://www.exploit-db.com/exploits/15774

Scores

EPSS 0.0594
EPSS Percentile 90.7%

Details

CWE
CWE-269
Status published
Products (3)
linux/linux_kernel < 2.6.36.2
opensuse/opensuse 11.3
suse/linux_enterprise_real_time_extension 11 sp1
Published Dec 22, 2010
Tracked Since Feb 18, 2026