Security Advisory

CVE-2009-1883

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-09-18 10:00:00
Last updated 2024-08-07 05:27:54
Assigner redhat
State PUBLISHED

Description

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.