CVE-2012-1568
published 2013-03-01CVE-2012-1568: The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle…
PriorityP49low1.9CVSS 2.0
AVLACMAuNCNIPAN
EPSS
0.36%
28.1th percentile
The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, which makes it easier for context-dependent attackers to bypass the ASLR protection mechanism by leveraging a predictable base address for one of these libraries.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:P/A:N
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vp43-m2w7-p2vc: The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not proper
ghsa_unreviewed·2022-05-14
CVE-2012-1568 [LOW] GHSA-vp43-m2w7-p2vc: The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not proper
The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, which makes it easier for context-dependent attackers to bypass the ASLR protection mechanism by leveraging a predictable base address for one of these libraries.
Red Hat
kernel: execshield: predictable ascii armour base address
vendor_redhat·2012-03-17·CVSS 1.9
CVE-2012-1568 [LOW] kernel: execshield: predictable ascii armour base address
kernel: execshield: predictable ascii armour base address
The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, which makes it easier for context-dependent attackers to bypass the ASLR protection mechanism by leveraging a predictable base address for one of these libraries.
Package: kernel (Red Hat Enterprise Linux Extended Update Support 5.6) - Affected
Package: kernel (Red Hat Enterprise Linux Extended Update Support 6.2) - Affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-1568 kernel: execshield: predictable ascii armour base address
bugzilla·2012-03-20·CVSS 1.9
CVE-2012-1568 [LOW] CVE-2012-1568 kernel: execshield: predictable ascii armour base address
CVE-2012-1568 kernel: execshield: predictable ascii armour base address
When running a binary with a lot of shared libraries, predictable base address is used for one of the loaded libraries.
This flaw could be used to bypass ASLR.
References:
http://scarybeastsecurity.blogspot.com/2012/03/some-random-observations-on-linux-aslr.html
Discussion:
Created kernel tracking bugs for this issue
Affects: fedora-all [bug 804957]
---
kernel-3.3.0-4.fc16 has been pushed to the Fedora 16 stable repository. If problems still persist, please make note of it in this bug report.
---
kernel-2.6.42.12-1.fc15 has been pushed to the Fedora 15 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue has been addressed in following products:
Red Hat En
Bugzilla
CVE-2012-1568 kernel: execshield: predictable ascii armour base address [fedora-all]
bugzilla·2012-03-20·CVSS 1.9
CVE-2012-1568 [LOW] CVE-2012-1568 kernel: execshield: predictable ascii armour base address [fedora-all]
CVE-2012-1568 kernel: execshield: predictable ascii armour base address [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_
http://openwall.com/lists/oss-security/2012/03/21/3http://scarybeastsecurity.blogspot.com/2012/03/some-random-observations-on-linux-aslr.htmlhttp://www.openwall.com/lists/oss-security/2012/03/20/4https://bugzilla.redhat.com/show_bug.cgi?id=804947https://oss.oracle.com/git/?p=redpatch.git%3Ba=commit%3Bh=302a4fc15aebf202b6dffd6c804377c6058ee6e4http://openwall.com/lists/oss-security/2012/03/21/3http://scarybeastsecurity.blogspot.com/2012/03/some-random-observations-on-linux-aslr.htmlhttp://www.openwall.com/lists/oss-security/2012/03/20/4https://bugzilla.redhat.com/show_bug.cgi?id=804947https://oss.oracle.com/git/?p=redpatch.git%3Ba=commit%3Bh=302a4fc15aebf202b6dffd6c804377c6058ee6e4
2013-03-01
Published