CVE-2013-0871
UnknownEPSS 1.43%
Last modified
CVE-2013-0871 is a vulnerability of currently unknown severity. Race condition in the ptrace functionality in the Linux kernel before 3.7.5 allows local users to gain privileges via a PTRACE_SETREGS ptrace system call in a crafted application, as demonstrated by ptrace_death.. EPSS estimates a 1.43% chance of exploitation in the next 30 days.
Description
Race condition in the ptrace functionality in the Linux kernel before 3.7.5 allows local users to gain privileges via a PTRACE_SETREGS ptrace system call in a crafted application, as demonstrated by ptrace_death.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 3.5, < 3.7.5 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-0871?
Race condition in the ptrace functionality in the Linux kernel before 3.7.5 allows local users to gain privileges via a PTRACE_SETREGS ptrace system call in a crafted application, as demonstrated by ptrace_death.
How severe is CVE-2013-0871?
Severity scoring for CVE-2013-0871 is pending analysis. The EPSS model estimates a 1.43% probability of exploitation in the next 30 days.
How do I fix CVE-2013-0871?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-0865The vqa_decode_chunk function in libavcodec/vqavideo.c in FF…
- CVE-2013-0866The aac_decode_init function in libavcodec/aacdec.c in FFmpe…
- CVE-2013-0867The decode_slice_header function in libavcodec/h264.c in FFm…
- CVE-2013-0868libavcodec/huffyuvdec.c in FFmpeg before 1.1.2 allows remote…
- CVE-2013-0869The field_end function in libavcodec/h264.c in FFmpeg before…
- CVE-2013-0870The 'vp3_decode_frame' function in FFmpeg 1.1.4 moves thread…
- CVE-2013-0872The swr_init function in libswresample/swresample.c in FFmpe…
- CVE-2013-0873The read_header function in libavcodec/shorten.c in FFmpeg b…
- CVE-2013-0874The (1) doubles2str and (2) shorts2str functions in libavcod…
- CVE-2013-0875The ff_add_png_paeth_prediction function in libavcodec/pngde…
- CVE-2013-0876Multiple integer overflows in the (1) old_codec37 and (2) ol…
- CVE-2013-0877The old_codec37 function in libavcodec/sanm.c in FFmpeg befo…
Are you affected by CVE-2013-0871?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
