CVE-2013-0268

medium
Published 2013-02-18 ยท Modified 2026-04-29
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.2

Description

The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by executing a crafted application as root, as demonstrated by msr32.c.

Predictions

Exploit likelihood
55%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Exploits

Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.

Exploit-DB

EDB-27297 local linux
spender ยท 2013-08-02

Linux Kernel 3.7.6 (RedHat x86/x64) - 'MSR' Driver Privilege Escalation

Source code queued for fetch โ€” refresh in a moment.

OS impact

linux Linux kernel Affected 137 releases
VersionStatusFixed in
3.7.4 Affected โ€”
3.7.3 Affected โ€”
3.7.2 Affected โ€”
3.7.1 Affected โ€”
3.7 Affected โ€”
3.6.11 Affected โ€”
3.6.10 Affected โ€”
3.6.9 Affected โ€”
3.5.7 Affected โ€”
3.5.6 Affected โ€”
3.5.5 Affected โ€”
3.5.4 Affected โ€”
3.5.3 Affected โ€”
3.5.2 Affected โ€”
3.5.1 Affected โ€”
3.4.24 Affected โ€”
3.4.23 Affected โ€”
3.4.22 Affected โ€”
3.4.21 Affected โ€”
3.4.20 Affected โ€”
3.4.19 Affected โ€”
3.4.18 Affected โ€”
3.4.17 Affected โ€”
3.4.16 Affected โ€”
3.4.15 Affected โ€”
3.4.14 Affected โ€”
3.4.13 Affected โ€”
3.4.12 Affected โ€”
3.4.11 Affected โ€”
3.4.10 Affected โ€”
3.4.9 Affected โ€”
3.4.8 Affected โ€”
3.4.7 Affected โ€”
3.4.6 Affected โ€”
3.4.5 Affected โ€”
3.4.4 Affected โ€”
3.4.3 Affected โ€”
3.4.2 Affected โ€”
3.4.1 Affected โ€”
3.4 Affected โ€”
3.3.8 Affected โ€”
3.3.7 Affected โ€”
3.3.6 Affected โ€”
3.3.5 Affected โ€”
3.3.4 Affected โ€”
3.3.3 Affected โ€”
3.3.2 Affected โ€”
3.3.1 Affected โ€”
3.3 Affected โ€”
3.2.30 Affected โ€”
3.2.29 Affected โ€”
3.2.28 Affected โ€”
3.2.27 Affected โ€”
3.2.26 Affected โ€”
3.2.25 Affected โ€”
3.2.24 Affected โ€”
3.2.23 Affected โ€”
3.2.22 Affected โ€”
3.2.21 Affected โ€”
3.2.20 Affected โ€”
3.2.19 Affected โ€”
3.2.18 Affected โ€”
3.2.17 Affected โ€”
3.2.16 Affected โ€”
3.2.15 Affected โ€”
3.2.14 Affected โ€”
3.2.13 Affected โ€”
3.2.12 Affected โ€”
3.2.11 Affected โ€”
3.2.10 Affected โ€”
3.2.9 Affected โ€”
3.2.8 Affected โ€”
3.2.7 Affected โ€”
3.2.6 Affected โ€”
3.2.5 Affected โ€”
3.2.4 Affected โ€”
3.2.3 Affected โ€”
3.2.2 Affected โ€”
3.2.1 Affected โ€”
3.2 Affected โ€”
3.1.10 Affected โ€”
3.1.9 Affected โ€”
3.1.8 Affected โ€”
3.1.7 Affected โ€”
3.1.6 Affected โ€”
3.1.5 Affected โ€”
3.1.4 Affected โ€”
3.1.3 Affected โ€”
3.1.2 Affected โ€”
3.1.1 Affected โ€”
3.1 Affected โ€”
3.0.44 Affected โ€”
3.0.43 Affected โ€”
3.0.42 Affected โ€”
3.0.41 Affected โ€”
3.0.40 Affected โ€”
3.0.39 Affected โ€”
3.0.38 Affected โ€”
3.0.37 Affected โ€”
3.0.36 Affected โ€”
3.0.35 Affected โ€”
3.0.34 Affected โ€”
3.0.33 Affected โ€”
3.0.32 Affected โ€”
3.0.31 Affected โ€”
3.0.30 Affected โ€”
3.0.29 Affected โ€”
3.0.28 Affected โ€”
3.0.27 Affected โ€”
3.0.26 Affected โ€”
3.0.25 Affected โ€”
3.0.24 Affected โ€”
3.0.23 Affected โ€”
3.0.22 Affected โ€”
3.0.21 Affected โ€”
3.0.20 Affected โ€”
3.0.19 Affected โ€”
3.0.18 Affected โ€”
3.0.17 Affected โ€”
3.0.16 Affected โ€”
3.0.15 Affected โ€”
3.0.14 Affected โ€”
3.0.13 Affected โ€”
3.0.12 Affected โ€”
3.0.11 Affected โ€”
3.0.10 Affected โ€”
3.0.9 Affected โ€”
3.0.8 Affected โ€”
3.0.7 Affected โ€”
3.0.6 Affected โ€”
3.0.5 Affected โ€”
3.0.4 Affected โ€”
3.0.3 Affected โ€”
3.0.2 Affected โ€”
3.0.1 Affected โ€”
3.0 Affected โ€”
โ€” Affected โ€”
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 3.2.39-1
sid Fixed 3.2.39-1
forky Fixed 3.2.39-1
bullseye Fixed 3.2.39-1
bookworm Fixed 3.2.39-1

References

CWEs

CWE-264

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.