The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which allows local users to gain privileges via a crafted application.
Exploitability
AV:LAC:MAu:NImpact
C:CI:CA:C6.9/AV:L/AC:M/Au:N/C:C/I:C/A:C