CVE-2009-0784 describes a race condition in the SystemTap stap tool (versions 0.0.20080705 and 0.0.20090314) affecting Debian and SystemTap products. This vulnerability allows local users in the 'stapusr' group to insert arbitrary SystemTap kernel modules, leading to privilege escalation. With a CVSS score of 6.3, it is considered a medium severity issue, requiring local access and moderate attack complexity to achieve complete integrity and availability impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion, suggesting it is not a widely targeted vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
0.0.20080705CPE matchmatch criteria | cpe:2.3:a:systemtap:systemtap:0.0.20080705:*:*:*:*:*:*:* | ||
0.0.20090314CPE matchmatch criteria | cpe:2.3:a:systemtap:systemtap:0.0.20090314:*:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:N/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.