Page 4 of 31 results (0.003 seconds)
CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

CVE-2014-9645 – Ubuntu Security Notice USN-3935-1
https://notcve.org/view.php?id=CVE-2014-9645
09 Feb 2015 — The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command. La función add_probe en modutils/modprobe.c en BusyBox en versiones anteriores a 1.23.0 permite a usuarios locales eludir las restricciones previstas al cargar los módulos del kernel a través de un caracter / (barra oblicua)... • http://git.busybox.net/busybox/commit/?id=4e314faa0aecb66717418e9a47a4451aec59262b • CWE-20: Improper Input Validation •