The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modification.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Feb 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|
Tue, 13 Aug 2024 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|

Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2025-02-03T14:19:37.627Z
Reserved: 2014-05-03T00:00:00.000Z
Link: CVE-2014-3153

Updated: 2024-08-06T10:35:56.633Z

Status : Deferred
Published: 2014-06-07T14:55:27.240
Modified: 2025-04-12T10:46:40.837
Link: CVE-2014-3153
