4
CVSSv2

CVE-2011-4080

Published: 24/05/2012 Updated: 13/02/2023
CVSS v2 Base Score: 4 | Impact Score: 6.9 | Exploitability Score: 1.9
VMScore: 357
Vector: AV:L/AC:H/Au:N/C:C/I:N/A:N

Vulnerability Summary

The sysrq_sysctl_handler function in kernel/sysctl.c in the Linux kernel prior to 2.6.39 does not require the CAP_SYS_ADMIN capability to modify the dmesg_restrict value, which allows local users to bypass intended access restrictions and read the kernel ring buffer by leveraging root privileges, as demonstrated by a root user in a Linux Containers (aka LXC) environment.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel