cbcvebase.
CVE-2009-1185
published 2009-04-17

CVE-2009-1185: udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK…

high7.2CVSS 3.1
AVLACLAuNCCICAC
EXPLOIT
udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.

Affected

23 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
fedoraprojectfedora
fedoraprojectfedora
juniperctpview< 7.17.1
juniperctpview
juniperctpview
opensuseopensuse
opensuseopensuse
opensuseopensuse
suselinux_enterprise_debuginfo
suselinux_enterprise_debuginfo
suselinux_enterprise_desktop
suselinux_enterprise_desktop
suselinux_enterprise_server
suselinux_enterprise_server
udev_projectudev< 141141
vmwareesxi
vmwarevmware_workstation