CVE-2007-4573
Publication date 24 September 2007
Last updated 24 July 2024
Ubuntu priority
The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain privileges by triggering an out-of-bounds access to the system call table using the %RAX register.
Status
Package | Ubuntu Release | Status |
---|---|---|
linux | ||
linux-source-2.6.15 | ||
linux-source-2.6.17 | ||
linux-source-2.6.20 | ||
linux-source-2.6.22 | ||
xen-source | ||