PinTheft — the sixth vulnerability of the Copy Fail class, providing root rights in Linux
Details have emerged about the sixth vulnerability (1, 2-3, 4, 5) that allows an unprivileged local user to gain root privileges by overwriting data in page caches. The vulnerability has been given the code name PinTheft. A prototype exploit is available. The CVE identifier has not yet been assigned. A patch has been released as of May 5, and on May 11 it was accepted into the netdev branch, but not included in […]
