REDHAT-BUG-1354383: High severity linux kernel vulnerability
A vulnerability leading to a local privilege escalation was found in apparmor in the Linux kernel. When procpidattrwrite() was changed to use memdupuser apparmor's (interface violating) assumption that the setprocattr buffer was always a single page was violated.
Upstream pull request:
http://marc.info/?l=linux-kernel&m=146793642811929&w=2
Upstream fix:
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=30a46a4647fd1df9cf52e43bf467f0d9265096ca
References:
http://seclists.org/oss-sec/2016/q3/30
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1354383?
REDHAT-BUG-1354383 is classified as a local privilege escalation vulnerability.
How do I fix REDHAT-BUG-1354383?
To mitigate REDHAT-BUG-1354383, update the affected versions of the Linux Kernel and AppArmor to the latest patched versions.
What is the affected software for REDHAT-BUG-1354383?
REDHAT-BUG-1354383 affects the Linux Kernel and AppArmor.
Can REDHAT-BUG-1354383 be exploited remotely?
No, REDHAT-BUG-1354383 requires local access to exploit due to its nature as a local privilege escalation vulnerability.
What could an attacker achieve by exploiting REDHAT-BUG-1354383?
An attacker exploiting REDHAT-BUG-1354383 could gain elevated privileges on the system, potentially compromising security.