The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.
CVSS Details
- CVSS 3.1 Base Score: 5.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-2.6.10-5-k7-smpUpgrade linux-image-2.6.8.1-5-amd64-k8-smpUpgrade linux-image-2.6.8.1-5-powerpcUpgrade linux-image-2.6.8.1-5-power4-smpUpgrade linux-image-2.6.10-5-686Upgrade linux-image-2.6.10-5-itaniumUpgrade linux-image-2.6.8.1-5-amd64-genericUpgrade linux-image-2.6.10-5-mckinley-smpUpgrade linux-image-2.6.8.1-5-k7-smpUpgrade linux-image-2.6.10-5-itanium-smpUpgrade linux-image-2.6.10-5-686-smpUpgrade linux-image-2.6.10-5-powerpcUpgrade linux-image-2.6.10-5-amd64-k8Upgrade linux-image-2.6.8.1-5-686-smpUpgrade linux-image-2.6.8.1-5-amd64-xeonUpgrade linux-image-2.6.8.1-5-power3Upgrade linux-patch-ubuntu-2.6.10Upgrade linux-image-2.6.10-5-k7 | Nov 8, 2024 | Aug 23, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub