« Back to list

CVE-2009-0342

Status: ModifiedHigh (7.2)—

Niels Provos Systrace before 1.6f on the x86_64 Linux platform allows local users to bypass intended access restrictions by making a 64-bit syscall with a syscall number that corresponds to a policy-compliant 32-bit syscall.

CVSS

Exploitation probability (EPSS)

EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).

Affected technologies (1)

CWEs

References

Raw JSON (NVD)

Show
{
  "id": "CVE-2009-0342",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.2,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": true,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2009-01-29T19:30:00.280",
  "references": [
    {
      "url": "http://scary.beasts.org/security/CESA-2009-001.html",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.citi.umich.edu/u/provos/systrace/",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/500377/100/0/threaded",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/33417",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://scary.beasts.org/security/CESA-2009-001.html",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.citi.umich.edu/u/provos/systrace/",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/500377/100/0/threaded",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/33417",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-264"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Niels Provos Systrace before 1.6f on the x86_64 Linux platform allows local users to bypass intended access restrictions by making a 64-bit syscall with a syscall number that corresponds to a policy-compliant 32-bit syscall."
    },
    {
      "lang": "es",
      "value": "Niels Provos Systrace anteriores a v1.6f en las plataformas Linux x86_64 permite a usuarios locales evitar las restricciones de acceso previstas mediante una syscal de 64 bit  con un número de llamada correspondiente a una llamada de 32 bit."
    }
  ],
  "lastModified": "2026-06-16T23:04:49.147",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:provos:systrace:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "01CBABB4-4603-447B-A036-22926AA4CC52",
              "versionEndIncluding": "1.6e"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DF23E751-38C8-4B5F-8527-D20E3ADEB723"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2D036342-98D8-460F-B9B9-1434BF85A961"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C991DB0D-062B-4FBF-A65C-2490F0056767"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CBCBB458-F90F-4914-944C-4BD3EAAA9935"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D5B1E4B1-7B7D-40D8-9069-F58FED95CFB9"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.6:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "83E3362A-01FA-4574-AF91-DD5D3272F703"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.6a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "272209F6-64EE-408D-9F14-5CDBD36758D8"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.6b:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A0FB4779-B9F2-4667-8551-90C092FDE668"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.6c:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1EE7BAF1-E06E-4B77-B71E-9EFE7D48D40D"
            },
            {
              "criteria": "cpe:2.3:a:provos:systrace:1.6d:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A139ACF1-554C-40D1-A68B-D1A278F706A9"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:linux:linux_kernel:_nil_:_nil_:x86_64:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "FA8AA941-3B59-458D-8C3F-EBB79B754F8C"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}