CVE-2011-1781

SystemTap 1.4, when unprivileged (aka stapusr) mode is enabled, allows local users to cause a denial of service (divide-by-zero error and OOPS) via a crafted ELF program with DWARF expressions that are not properly handled by a stap script that performs stack unwinding (aka backtracing).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
1.2 UNKNOWN
LOCAL
HIGH
AV:L/AC:H/Au:N/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 20%
Affected Products (NVD)
VendorProductVersion
systemtapsystemtap
1.4
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
systemtap
bookworm
4.8-2
fixed
bullseye
4.4-2
fixed
lenny
not-affected
sid
5.1-4
fixed
squeeze
not-affected
trixie
5.1-4
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
systemtap
hardy
ignored
lucid
ignored
maverick
ignored
natty
ignored
oneiric
ignored
precise
not-affected
quantal
not-affected
raring
not-affected
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
systemtap
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-client
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-grapher
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-initscript
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-runtime
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-sdt-devel
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-server
RHEL 6
0:1.4-6.el6_1.1
fixed
systemtap-testsuite
RHEL 6
0:1.4-6.el6_1.1
fixed
Common Weakness Enumeration