// For flags

CVE-2008-4210

Linux Kernel < 2.6.22 - 'ftruncate()'/'open()' Local Privilege Escalation

Severity Score

4.6
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

fs/open.c in the Linux kernel before 2.6.22 does not properly strip setuid and setgid bits when there is a write to a file, which allows local users to gain the privileges of a different group, and obtain sensitive information or possibly have unspecified other impact, by creating an executable file in a setgid directory through the (1) truncate or (2) ftruncate function in conjunction with memory-mapped I/O.

fs/open.c en el kernel de Linux anterior a v2.6.22 no elimina de forma adecuada los bits "setuid" y "setgid" cuando los escribe en un fichero , lo que permite a usuarios locales obtener privilegios de grupos diferentes, y obtener información sensible o posiblemente tener otro impacto no especificado, creando un fichero ejecutable en el directorio setgid a través de las funciones (1) truncate o (2) ftruncate en conjunción con una E/S mapeada en memoria.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-09-24 CVE Reserved
  • 2008-09-29 CVE Published
  • 2008-10-27 First Exploit
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (33)
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
<= 2.6.21.7
Search vendor "Linux" for product "Linux Kernel" and version " <= 2.6.21.7"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.2.27
Search vendor "Linux" for product "Linux Kernel" and version "2.2.27"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.1
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.1"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.2
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.2"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.3
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.3"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.4
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.4"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.5
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.36.6
Search vendor "Linux" for product "Linux Kernel" and version "2.4.36.6"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6
Search vendor "Linux" for product "Linux Kernel" and version "2.6"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.18"
rc7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.19.4
Search vendor "Linux" for product "Linux Kernel" and version "2.6.19.4"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.19.5
Search vendor "Linux" for product "Linux Kernel" and version "2.6.19.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.19.6
Search vendor "Linux" for product "Linux Kernel" and version "2.6.19.6"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.19.7
Search vendor "Linux" for product "Linux Kernel" and version "2.6.19.7"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.16
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.16"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.17
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.17"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.18
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.18"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.19
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.19"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.20
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.20"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.20.21
Search vendor "Linux" for product "Linux Kernel" and version "2.6.20.21"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.5
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.6
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.6"
-
Affected