Linux Kernel sysfs_readdir() NULL Pointer Dereference Lets Local Users Deny Service
|
|
SecurityTracker Alert ID: 1018289 |
|
SecurityTracker URL: http://securitytracker.com/id/1018289
|
|
CVE Reference:
CVE-2007-3104
(Links to External Site)
|
Date: Jun 26 2007
|
Impact:
Denial of service via local system
|
|
|
Description:
A vulnerability was reported in the Linux kernel. A local user can cause denial of service conditions.
A local user can invoke the sysfs_readdir() function to trigger a kernel oops.
|
Impact:
A local user can cause denial of service conditions on the target system.
|
Solution:
No solution was available at the time of this entry.
|
Vendor URL: www.kernel.org/ (Links to External Site)
|
Cause:
State error
|
Underlying OS:
|
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Tue, 26 Jun 2007 06:20:50 -0400
Subject: Linux kernel local denial of service
|
Red Hat reported:
* a flaw in the sysfs_readdir function that allowed a local user to cause a
denial of service by dereferencing a NULL pointer. (CVE-2007-3104, Moderate)
|
|