CVE-2014-0196

MEDIUMCVSS 5.5/10Actively ExploitedEPSS 22.48%

Last modified

CVE-2014-0196 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or gain privileges by triggering a race condition involving read and write operations with long strings.. CISA has confirmed active exploitation in the wild. EPSS estimates a 22.48% chance of exploitation in the next 30 days.

Description

The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or gain privileges by triggering a race condition involving read and write operations with long strings.

Metrics

CVSS 3.1
5.5/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
22.48%

97.4th percentile

Probability of exploitation in the next 30 days. Learn more

Exploitation Status

This vulnerability is listed in CISA’s Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. Federal agencies must remediate by .

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
LinuxLinux Kernel> 2.6.31, < 3.2.59
LinuxLinux Kernel>= 3.3, < 3.4.91
LinuxLinux Kernel>= 3.5, < 3.10.40
LinuxLinux Kernel>= 3.11, < 3.12.20
LinuxLinux Kernel>= 3.13, < 3.14.4
LinuxLinux Kernel2.6.31
DebianDebian Linux6.0
DebianDebian Linux7.0
RedhatEnterprise Linux6.0
RedhatEnterprise Linux Eus6.3
RedhatEnterprise Linux Eus6.4
RedhatEnterprise Linux Server Eus6.3
SuseSuse Linux Enterprise Desktop11Sp3
SuseSuse Linux Enterprise High Availability Extension11Sp3
SuseSuse Linux Enterprise Server11Sp3
OracleLinux6
CanonicalUbuntu Linux10.04
CanonicalUbuntu Linux12.04
CanonicalUbuntu Linux12.10
CanonicalUbuntu Linux13.10
CanonicalUbuntu Linux14.04
F5Big-Ip Access Policy Manager>= 11.1.0, <= 11.5.1
F5Big-Ip Advanced Firewall Manager>= 11.3.0, <= 11.5.1
F5Big-Ip Analytics>= 11.1.0, <= 11.5.1
F5Big-Ip Application Acceleration Manager>= 11.4.0, <= 11.5.1
F5Big-Ip Application Security Manager>= 11.1.0, <= 11.5.1
F5Big-Ip Edge Gateway>= 11.1.0, <= 11.3.0
F5Big-Ip Global Traffic Manager>= 11.1.0, <= 11.5.1
F5Big-Ip Link Controller>= 11.1.0, <= 11.5.1
F5Big-Ip Local Traffic Manager>= 11.1.0, <= 11.5.1
F5Big-Ip Policy Enforcement Manager>= 11.3.0, <= 11.5.1
F5Big-Ip Protocol Security Module>= 11.1.0, <= 11.4.1
F5Big-Ip Wan Optimization Manager>= 11.1.0, <= 11.3.0
F5Big-Ip Webaccelerator>= 11.1.0, <= 11.3.0
F5Big-Iq Application Delivery Controller4.5.0
F5Big-Iq Centralized Management4.6.0
F5Big-Iq Cloud>= 4.0.0, <= 4.5.0
F5Big-Iq Cloud And Orchestration1.0.0
F5Big-Iq Device>= 4.2.0, <= 4.5.0
F5Big-Iq Security>= 4.0.0, <= 4.5.0
F5Enterprise Manager3.1.0
F5Enterprise Manager3.1.1

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2014-0196?
The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or gain privileges by triggering a race condition involving read and write operations with long strings.
How severe is CVE-2014-0196?
CVE-2014-0196 has a CVSS score of 5.5/10 (MEDIUM severity). The EPSS model estimates a 22.48% probability of exploitation in the next 30 days. This vulnerability is listed in CISA's Known Exploited Vulnerabilities catalog.
How do I fix CVE-2014-0196?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2014-0196?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST