CVE-2009-1527
05.05.2009, 20:30
Race condition in the ptrace_attach function in kernel/ptrace.c in the Linux kernel before 2.6.30-rc4 allows local users to gain privileges via a PTRACE_ATTACH ptrace call during an exec system call that is launching a setuid application, related to locking an incorrect cred_exec_mutex object.
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 𝑥 ≤ 2.6.29 |
linux | linux_kernel | 2.6.30 |
linux | linux_kernel | 2.6.30:rc1 |
linux | linux_kernel | 2.6.30:rc2 |
linux | linux_kernel | 2.6.30:rc3 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References