Unrated severityNVD Advisory· Published Apr 17, 2009· Updated Apr 23, 2026
CVE-2009-1185
CVE-2009-1185
Description
udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.
Affected products
22cpe:2.3:a:suse:linux_enterprise_debuginfo:10:sp2:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:suse:linux_enterprise_debuginfo:10:sp2:*:*:*:*:*:*
- cpe:2.3:a:suse:linux_enterprise_debuginfo:11:-:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:10:sp2:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:suse:linux_enterprise_desktop:10:sp2:*:*:*:*:*:*
- cpe:2.3:o:suse:linux_enterprise_desktop:11:-:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_server:10:sp2:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:suse:linux_enterprise_server:10:sp2:*:*:*:*:*:*
- cpe:2.3:o:suse:linux_enterprise_server:11:-:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:7.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:8.10:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:9:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:9:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:10:*:*:*:*:*:*:*
cpe:2.3:a:juniper:ctpview:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:juniper:ctpview:*:*:*:*:*:*:*:*range: <7.1
- cpe:2.3:a:juniper:ctpview:7.1:-:*:*:*:*:*:*
- cpe:2.3:a:juniper:ctpview:7.1:r1:*:*:*:*:*:*
- cpe:2.3:a:juniper:ctpview:7.2:-:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
37- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- www.exploit-db.com/exploits/8572nvdExploitThird Party AdvisoryVDB Entry
- kb.juniper.net/InfoCenter/indexnvdThird Party Advisory
- kb.juniper.net/InfoCenter/indexnvdThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2009-04/msg00006.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2009-04/msg00012.htmlnvdMailing ListThird Party Advisory
- lists.vmware.com/pipermail/security-announce/2009/000060.htmlnvdThird Party Advisory
- slackware.com/security/viewer.phpnvdMailing ListThird Party Advisory
- www.debian.org/security/2009/dsa-1772nvdThird Party Advisory
- www.gentoo.org/security/en/glsa/glsa-200904-18.xmlnvdThird Party Advisory
- www.redhat.com/support/errata/RHSA-2009-0427.htmlnvdThird Party Advisory
- www.securityfocus.com/archive/1/502752/100/0/threadednvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/archive/1/504849/100/0/threadednvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/34536nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/idnvdBroken LinkThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/usn-758-1nvdThird Party Advisory
- www.vmware.com/security/advisories/VMSA-2009-0009.htmlnvdThird Party Advisory
- launchpad.net/bugs/cve/2009-1185nvdIssue TrackingThird Party Advisory
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5975nvdThird Party Advisory
- www.redhat.com/archives/fedora-package-announce/2009-April/msg00462.htmlnvdMailing ListThird Party Advisory
- www.redhat.com/archives/fedora-package-announce/2009-April/msg00463.htmlnvdMailing ListThird Party Advisory
- secunia.com/advisories/34731nvdNot Applicable
- secunia.com/advisories/34750nvdNot Applicable
- secunia.com/advisories/34753nvdNot Applicable
- secunia.com/advisories/34771nvdNot Applicable
- secunia.com/advisories/34776nvdNot Applicable
- secunia.com/advisories/34785nvdNot Applicable
- secunia.com/advisories/34787nvdNot Applicable
- secunia.com/advisories/34801nvdNot Applicable
- secunia.com/advisories/35766nvdNot Applicable
- wiki.rpath.com/Advisories:rPSA-2009-0063nvdBroken Link
- wiki.rpath.com/wiki/Advisories:rPSA-2009-0063nvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.vupen.com/english/advisories/2009/1053nvdPermissions Required
- www.vupen.com/english/advisories/2009/1865nvdPermissions Required
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10925nvdBroken Link
News mentions
0No linked articles in our index yet.