Scientific Linux Security Update : systemtap on SL5.x i386/x86_64

High Nessus Plugin ID 60904


The remote Scientific Linux host is missing one or more security updates.


It was discovered that staprun did not properly sanitize the environment before executing the modprobe command to load an additional kernel module. A local, unprivileged user could use this flaw to escalate their privileges. (CVE-2010-4170)

It was discovered that staprun did not check if the module to be unloaded was previously loaded by SystemTap. A local, unprivileged user could use this flaw to unload an arbitrary kernel module that was not in use. (CVE-2010-4171)

Note: After installing this update, users already in the stapdev group must be added to the stapusr group in order to be able to run the staprun tool.


Update the affected packages.

See Also

Plugin Details

Severity: High

ID: 60904

File Name: sl_20101117_systemtap_on_SL5_x.nasl

Version: $Revision: 1.2 $

Type: local

Agent: unix

Published: 2012/08/01

Modified: 2016/01/14

Dependencies: 12634

Risk Information

Risk Factor: High


Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: x-cpe:/o:fermilab:scientific_linux

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/RedHat/release, Host/RedHat/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2010/11/17

Reference Information

CVE: CVE-2010-4170, CVE-2010-4171