CVE-2014-9322: High severity linux kernel vulnerability

Published Dec 10, 2014
·
Updated

arch/x86/kernel/entry64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by triggering an IRET instruction that leads to access to a GS Base address from the wrong space.

Other sources

It was found that because paranoid entry does not contain the swapgs fixup for badiret (unlike error entry), under certain conditions (#SS on iret) it can happen that badiret is reached with usergs instead of kernelgs that it is expecting.

A local unprivileged user can use this flaw to increase their privileges on the system.

Upstream fix: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=6f442be2fb22be02cafa606f1769fa1e6f894441

Acknowledgements:

Red Hat would like to thank Andy Lutomirski for reporting this issue.

Red Hat

Affected Software

14 affected componentsFixes available
Linux Linux kernel<3.2.65
Linux Linux kernel>=3.3<3.4.106
Linux Linux kernel>=3.5<3.10.62
Linux Linux kernel>=3.11<3.12.35
Linux Linux kernel>=3.13<3.14.26
Linux Linux kernel>=3.15<3.16.35
Linux Linux kernel>=3.17<3.17.5
redhat Enterprise Linux Eus=5.6
Canonical Ubuntu Linux=10.04
openSUSE Evergreen=11.4
SUSE SUSE Linux Enterprise Server=10-sp4
Google Android=6.0
Google Android=6.0.1
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1

Event History

Dec 10, 2014
Data Sourced
via Red Hat·07:31 PM
DescriptionSeverityAffected Software
Dec 17, 2014
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:07 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·01:05 AM
RemedyDescriptionSeverityAffected Software
Apr 28, 2025
Data Sourced
via Debian·02:10 AM
DescriptionAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2014-9322?

The severity of CVE-2014-9322 is classified as high due to its potential to allow local users to gain elevated privileges.

2

How do I fix CVE-2014-9322?

To fix CVE-2014-9322, upgrade to a Linux kernel version that is 3.17.5 or newer or ensure you are on a fixed version like 5.10.223-1 or 6.1.123-1.

3

What systems are affected by CVE-2014-9322?

CVE-2014-9322 affects various Linux kernel versions prior to 3.17.5, including those on operating systems like Debian, Ubuntu, and SUSE.

4

Can CVE-2014-9322 be exploited remotely?

CVE-2014-9322 cannot be exploited remotely as it requires local user access to the system.

5

What is the impact of CVE-2014-9322?

The impact of CVE-2014-9322 allows a local user to gain unauthorized privileges, potentially compromising system security.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203