CVE-2006-3626

NameCVE-2006-3626
DescriptionRace condition in Linux kernel 2.6.17.4 and earlier allows local users to gain root privileges by using prctl with PR_SET_DUMPABLE in a way that causes /proc/self/environ to become setuid root.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-1111
NVD severitymedium (attack range: local)
Debian Bugs378324

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
kernel-source-2.6.8sourcesarge2.6.8-16sarge4mediumDSA-1111
linux-2.6source(unstable)2.6.17-4high378324

Search for package or bug name: Reporting problems