CVE-2011-2905

Untrusted search path vulnerability in the perf_config function in tools/perf/util/config.c in perf, as distributed in the Linux kernel before 3.1, allows local users to overwrite arbitrary files via a crafted config file in the current working directory.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.2 UNKNOWN
LOCAL
HIGH
AV:L/AC:H/Au:N/C:C/I:C/A:C
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 38%
VendorProductVersion
linuxlinux_kernel
𝑥
≤ 3.0.68
linuxlinux_kernel
3.0.1
linuxlinux_kernel
3.0.2
linuxlinux_kernel
3.0.3
linuxlinux_kernel
3.0.4
linuxlinux_kernel
3.0.5
linuxlinux_kernel
3.0.6
linuxlinux_kernel
3.0.7
linuxlinux_kernel
3.0.8
linuxlinux_kernel
3.0.9
linuxlinux_kernel
3.0.10
linuxlinux_kernel
3.0.11
linuxlinux_kernel
3.0.12
linuxlinux_kernel
3.0.13
linuxlinux_kernel
3.0.14
linuxlinux_kernel
3.0.15
linuxlinux_kernel
3.0.16
linuxlinux_kernel
3.0.17
linuxlinux_kernel
3.0.18
linuxlinux_kernel
3.0.19
linuxlinux_kernel
3.0.20
linuxlinux_kernel
3.0.21
linuxlinux_kernel
3.0.22
linuxlinux_kernel
3.0.23
linuxlinux_kernel
3.0.24
linuxlinux_kernel
3.0.25
linuxlinux_kernel
3.0.26
linuxlinux_kernel
3.0.27
linuxlinux_kernel
3.0.28
linuxlinux_kernel
3.0.29
linuxlinux_kernel
3.0.30
linuxlinux_kernel
3.0.31
linuxlinux_kernel
3.0.32
linuxlinux_kernel
3.0.33
linuxlinux_kernel
3.0.34
linuxlinux_kernel
3.0.35
linuxlinux_kernel
3.0.36
linuxlinux_kernel
3.0.37
linuxlinux_kernel
3.0.38
linuxlinux_kernel
3.0.39
linuxlinux_kernel
3.0.40
linuxlinux_kernel
3.0.41
linuxlinux_kernel
3.0.42
linuxlinux_kernel
3.0.43
linuxlinux_kernel
3.0.44
linuxlinux_kernel
3.0.45
linuxlinux_kernel
3.0.46
linuxlinux_kernel
3.0.47
linuxlinux_kernel
3.0.48
linuxlinux_kernel
3.0.49
linuxlinux_kernel
3.0.50
linuxlinux_kernel
3.0.51
linuxlinux_kernel
3.0.52
linuxlinux_kernel
3.0.53
linuxlinux_kernel
3.0.54
linuxlinux_kernel
3.0.55
linuxlinux_kernel
3.0.56
linuxlinux_kernel
3.0.57
linuxlinux_kernel
3.0.58
linuxlinux_kernel
3.0.59
linuxlinux_kernel
3.0.60
linuxlinux_kernel
3.0.61
linuxlinux_kernel
3.0.62
linuxlinux_kernel
3.0.63
linuxlinux_kernel
3.0.64
linuxlinux_kernel
3.0.65
linuxlinux_kernel
3.0.66
linuxlinux_kernel
3.0.67
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
oneiric
not-affected
natty
Fixed 2.6.38-13.52
released
maverick
Fixed 2.6.35-30.61
released
lucid
Fixed 2.6.32-35.78
released
hardy
not-affected
linux-ec2
oneiric
dne
natty
dne
maverick
ignored
lucid
Fixed 2.6.32-319.39
released
hardy
dne
linux-fsl-imx51
oneiric
dne
natty
dne
maverick
dne
lucid
Fixed 2.6.31-611.29
released
hardy
dne
linux-lts-backport-maverick
oneiric
dne
natty
dne
maverick
dne
lucid
Fixed 2.6.35-30.61~lucid1
released
hardy
dne
linux-lts-backport-natty
oneiric
dne
natty
dne
maverick
dne
lucid
Fixed 2.6.38-13.52~lucid1
released
hardy
dne
linux-lts-backport-oneiric
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
hardy
dne
linux-mvl-dove
oneiric
dne
natty
dne
maverick
Fixed 2.6.32-419.37
released
lucid
Fixed 2.6.32-219.37
released
hardy
dne
linux-ti-omap4
oneiric
not-affected
natty
Fixed 2.6.38-1209.17
released
maverick
Fixed 2.6.35-903.26
released
lucid
dne
hardy
dne