Vulnerability Description
Linux kernel 2.6, when using vservers, allows local users to access resources of other vservers via a symlink attack in /proc.
CVSS Score
4.4
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | 2.6.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/28875
- http://www.debian.org/security/2008/dsa-1494Patch
- http://www.securityfocus.com/bid/27704
- http://www.securityfocus.com/bid/27798
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40486
- http://secunia.com/advisories/28875
- http://www.debian.org/security/2008/dsa-1494Patch
- http://www.securityfocus.com/bid/27704
- http://www.securityfocus.com/bid/27798
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40486
FAQ
What is CVE-2008-0163?
CVE-2008-0163 is a vulnerability with a CVSS score of 4.4 (MEDIUM). Linux kernel 2.6, when using vservers, allows local users to access resources of other vservers via a symlink attack in /proc.
How severe is CVE-2008-0163?
CVE-2008-0163 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0163?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.