7.2
CVSSv2

CVE-2011-2471

Published: 09/06/2011 Updated: 29/08/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

utils/opcontrol in OProfile 0.9.6 and previous versions might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, related to the daemonrc file and the do_save_setup and do_load_setup functions, a different vulnerability than CVE-2011-1760.

Vulnerable Product Search on Vulmon Subscribe to Product

maynard johnson oprofile 0.5.1

maynard johnson oprofile 0.6.1

maynard johnson oprofile 0.9.2

maynard johnson oprofile 0.9.3

maynard johnson oprofile 0.2

maynard johnson oprofile 0.8.1

maynard johnson oprofile 0.7

maynard johnson oprofile 0.9.4

maynard johnson oprofile 0.9.5

maynard johnson oprofile 0.5.4

maynard johnson oprofile 0.1

maynard johnson oprofile 0.5

maynard johnson oprofile 0.5.3

maynard johnson oprofile 0.7.1

maynard johnson oprofile 0.8

maynard johnson oprofile 0.4

maynard johnson oprofile 0.3

maynard johnson oprofile 0.5.2

maynard johnson oprofile 0.9

maynard johnson oprofile 0.9.1

maynard johnson oprofile 0.6

maynard johnson oprofile 0.8.2

maynard johnson oprofile

Vendor Advisories

OProfile could be made to run programs as an administrator ...