Race condition in SELinux 2.6.x through 2.6.9 allows local users to cause a denial of service (kernel crash) via SOCK_SEQPACKET unix domain sockets, which are not properly handled in the sock_dgram_sendmsg function.
CVSS Details
- CVSS 3.1 Base Score: 2.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-2.6.8.1-4-k7-smpUpgrade linux-image-2.6.8.1-4-amd64-k8Upgrade linux-image-2.6.8.1-4-k7Upgrade linux-image-2.6.8.1-4-power4Upgrade linux-image-2.6.8.1-4-powerpc-smpUpgrade linux-image-2.6.8.1-4-386Upgrade linux-image-2.6.8.1-4-686-smp | Nov 8, 2024 | Jan 10, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub