CVE-2015-5157

Description

arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing NMIs that occurred during userspace execution, which might allow local users to gain privileges by triggering an NMI.

Risk Information

Base Score
8.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.219

Associated Vulnerability

VulnerabilityOS Platform
Linux hardware enablement kernel from Trusty (USN-2687-1) linux-image-3.13.0-59-generic_3.13.0-59.98~precise1_i386.debLinux
Linux hardware enablement kernel from Trusty (USN-2687-1) linux-image-3.13.0-59-generic_3.13.0-59.98~precise1_amd64.debLinux
Linux kernel (USN-2688-1) linux-image-3.13.0-59-generic_3.13.0-59.98_i386.debLinux
Linux kernel (USN-2688-1) linux-image-3.13.0-59-generic_3.13.0-59.98_amd64.debLinux
Linux kernel (USN-2688-1) linux-image-3.13.0-59-lowlatency_3.13.0-59.98_i386.debLinux
Linux kernel (USN-2688-1) linux-image-3.13.0-59-lowlatency_3.13.0-59.98_amd64.debLinux
Linux hardware enablement kernel from Utopic (USN-2689-1) linux-image-3.16.0-45-generic_3.16.0-45.60~14.04.1_i386.debLinux
Linux hardware enablement kernel from Utopic (USN-2689-1) linux-image-3.16.0-45-generic_3.16.0-45.60~14.04.1_amd64.debLinux
Linux hardware enablement kernel from Utopic (USN-2689-1) linux-image-3.16.0-45-lowlatency_3.16.0-45.60~14.04.1_i386.debLinux
Linux hardware enablement kernel from Utopic (USN-2689-1) linux-image-3.16.0-45-lowlatency_3.16.0-45.60~14.04.1_amd64.debLinux
Linux hardware enablement kernel from Vivid (USN-2690-1) linux-image-3.19.0-25-generic_3.19.0-25.26~14.04.1_i386.debLinux
Linux hardware enablement kernel from Vivid (USN-2690-1) linux-image-3.19.0-25-generic_3.19.0-25.26~14.04.1_amd64.debLinux
Linux hardware enablement kernel from Vivid (USN-2690-1) linux-image-3.19.0-25-lowlatency_3.19.0-25.26~14.04.1_i386.debLinux
Linux hardware enablement kernel from Vivid (USN-2690-1) linux-image-3.19.0-25-lowlatency_3.19.0-25.26~14.04.1_amd64.debLinux
Linux kernel (USN-2691-1) linux-image-3.19.0-25-generic_3.19.0-25.26_i386.debLinux
Linux kernel (USN-2691-1) linux-image-3.19.0-25-generic_3.19.0-25.26_amd64.debLinux
Linux kernel (USN-2691-1) linux-image-3.19.0-25-lowlatency_3.19.0-25.26_i386.debLinux
Linux kernel (USN-2691-1) linux-image-3.19.0-25-lowlatency_3.19.0-25.26_amd64.debLinux
Linux kernel (USN-2700-1) linux-image-3.13.0-61-generic_3.13.0-61.100_i386.debLinux
Linux kernel (USN-2700-1) linux-image-3.13.0-61-generic_3.13.0-61.100_amd64.debLinux
Linux kernel (USN-2700-1) linux-image-3.13.0-61-lowlatency_3.13.0-61.100_i386.debLinux
Linux kernel (USN-2700-1) linux-image-3.13.0-61-lowlatency_3.13.0-61.100_amd64.debLinux
Linux hardware enablement kernel from Trusty (USN-2701-1) linux-image-3.13.0-61-generic_3.13.0-61.100~precise1_i386.debLinux
Linux hardware enablement kernel from Trusty (USN-2701-1) linux-image-3.13.0-61-generic_3.13.0-61.100~precise1_amd64.debLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-bigsmp-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-bigsmp-base-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-bigsmp-devel-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-default-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-default-base-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-default-devel-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-default-extra-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-ec2-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-ec2-base-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-ec2-devel-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-pae-3.0.101-0.47.71.1.i586.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-pae-base-3.0.101-0.47.71.1.i586.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-pae-devel-3.0.101-0.47.71.1.i586.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-pae-extra-3.0.101-0.47.71.1.i586.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-source-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-syms-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-trace-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Server 11-SP3 ) kernel-trace-base-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-trace-devel-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-xen-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-xen-base-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-xen-devel-3.0.101-0.47.71.1.x86_64.rpmLinux
SUSE-SU-2015:2108-1(SUSE Linux Enterprise Desktop 11-SP3 ) kernel-xen-extra-3.0.101-0.47.71.1.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.3.2.el6uek update (ELSA-2016-3519) dtrace-modules-3.8.13-118.3.2.el6uek-0.4.5-3.el6.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.3.2.el7uek update (ELSA-2016-3519) dtrace-modules-3.8.13-118.3.2.el7uek-0.4.5-3.el7.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.20.2.el6uek update (ELSA-2018-4022) dtrace-modules-3.8.13-118.20.2.el6uek-0.4.5-3.el6.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.20.2.el7uek update (ELSA-2018-4022) dtrace-modules-3.8.13-118.20.2.el7uek-0.4.5-3.el7.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.21.1.el6uek update (ELSA-2018-4109) dtrace-modules-3.8.13-118.21.1.el6uek-0.4.5-3.el6.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.21.1.el7uek update (ELSA-2018-4109) dtrace-modules-3.8.13-118.21.1.el7uek-0.4.5-3.el7.x86_64.rpmLinux
CVE-2015-5157NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234