Database/Kernel, userspace & hypervisor
Linux kernel (ptrace): Broken permission and object lifetime handling for PTRACE_TRACEME, local root
CVSS 7.8CVE-2019-13272Kernel, userspace & hypervisorKnown exploitedcurated
Impact
Broken permission and object lifetime handling for PTRACE_TRACEME, local root [KEV]
Who can reach it
Local user / tenant process
What to do
Livepatchable; otherwise drain + reboot
References
Related entries
- AMD Radeon Kernel Mode driver - Escape 0x2000c00 call handler: A low-privileged attacker can drive the RadeonCVE-2020-12964 · AMD Radeon Kernel Mode driver - Escape 0x2000c00 call handlerHigh
- Linux i915 GPU kernel driver: A use-after-free in the i915 GPU kernel driver. The general shape is that a GPU object isCVE-2020-7053 · Linux i915 GPU kernel driverHigh
- Linux kernel (netfilter x_tables): Heap out-of-bounds write in xt_compat_target_from_user()CVE-2021-22555 · Linux kernel (netfilter x_tables)High
- sudo: Baron Samedit: heap overflow in sudo argument parsing, root from any local accountCVE-2021-3156 · sudoHigh
- Linux kernel (seq_file / fs layer): Sequoia: size_t-to-int conversion in the filesystem layer, local root on defaultCVE-2021-33909 · Linux kernel (seq_file / fs layer)High
- Linux kernel (eBPF verifier): eBPF ALU32 bitwise-op bounds tracking flawCVE-2021-3490 · Linux kernel (eBPF verifier)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.