1.9
CVSSv2

CVE-2013-1958

Published: 24/04/2013 Updated: 13/02/2023
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The scm_check_creds function in net/core/scm.c in the Linux kernel prior to 3.8.6 does not properly enforce capability requirements for controlling the PID value associated with a UNIX domain socket, which allows local users to bypass intended access restrictions by leveraging the time interval during which a user namespace has been created but a PID namespace has not been created.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 3.8.2

linux linux kernel 3.8.0

linux linux kernel

linux linux kernel 3.8.1

linux linux kernel 3.8.3

linux linux kernel 3.8.4