CVE-2014-9322

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
7.2
HIGH
Affected
1
PROJECT

Description

arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by triggering an IRET instruction that leads to access to a GS Base address from the wrong space.

Linux kernel source tree
GitHubGitHub
237K