CVE-2011-1182

Linux kernel <2.6.39 - Privilege Escalation

Title source: llm
STIX 2.1

Description

kernel/signal.c in the Linux kernel before 2.6.39 allows local users to spoof the uid and pid of a signal sender via a sigqueueinfo system call.

References (6)

Core 6
Core References
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2011/03/23/2
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2011-0927.html
Issue Tracking, Third Party Advisory x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=690028
Third Party Advisory x_refsource_confirm
http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.39

Scores

EPSS 0.0008
EPSS Percentile 23.3%

Details

Status published
Products (7)
linux/linux_kernel < 2.6.39
redhat/enterprise_linux 5.0
redhat/enterprise_linux_aus 5.6
redhat/enterprise_linux_desktop 5.0
redhat/enterprise_linux_eus 5.6
redhat/enterprise_linux_server 5.0
redhat/enterprise_linux_workstation 5.0
Published Mar 01, 2013
Tracked Since Feb 18, 2026