CVE-2011-2502: Input Validation
It was found that systemtap runtime tool (staprun) did not properly enforce the module's path sanity check, when the ad-hoc module instrumentation via user-space probing with user-specified module path was requested. A local user, member of the 'stapusr' group could use this flaw to escalate their privileges.
Other sources
runtime/staprun/staprunfuncs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate modules when a module path is specified by a user for user-space probing, which allows local users in the stapusr group to gain privileges via a crafted module in the search path in the -u argument.
— MITRE
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2502?
The severity of CVE-2011-2502 is considered moderate due to the potential for local privilege escalation.
How do I fix CVE-2011-2502?
To fix CVE-2011-2502, upgrade the systemtap package to version 1.6 or later.
Who is affected by CVE-2011-2502?
CVE-2011-2502 affects local users, specifically those who are members of the 'stapusr' group.
What type of vulnerability is CVE-2011-2502?
CVE-2011-2502 is a local privilege escalation vulnerability in the systemtap runtime tool.
What versions of systemtap are impacted by CVE-2011-2502?
CVE-2011-2502 impacts multiple versions of systemtap, specifically all versions prior to 1.6.