Vulnerability Description
The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modification.
Affected Platforms (CPE)
💻
Linux Kernel
>= 3.3 and < 3.4.92💻
Linux Kernel
>= 3.5 and < 3.10.42💻
Linux Kernel
>= 3.11 and < 3.12.22💻
Linux Kernel
>= 3.13 and < 3.14.6💻
Enterprise Linux Server Aus
= 6.2💻
Linux Enterprise Desktop
= 11💻
Linux Enterprise High Availability Extension
= 11💻
Linux Enterprise Real Time Extension
= 11💻
Linux Enterprise Server
= 11💻
Linux Enterprise Server
= 11💻
Linux Enterprise Server
= 11💻
Linux Enterprise Server
= 11