CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. It affects Linux.
CVE
CVE-2009-3725
Severity
HIGH
CVSS
7.2
EPSS
0.61%
Linux
Original NVD Description
The connector layer in the Linux kernel before 2.6.31.5 does not require the CAP_SYS_ADMIN capability for certain interaction with the (1) uvesafb, (2) pohmelfs, (3) dst, or (4) dm subsystem, which allows local users to bypass intended access restrictions and gain privileges via calls to functions in these subsystems.