AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-2502

MEDIUM · CVSS 4.4 EPSS 0.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-07-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-2502
Severity
MEDIUM
CVSS
4.4
EPSS
0.52%

Original NVD Description

runtime/staprun/staprun_funcs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate modules when a module path is specified by a user for user-space probing, which allows local users in the stapusr group to gain privileges via a crafted module in the search path in the -u argument.