CVE-2011-1159
CVE-2011-1159
acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has connected to acpid.socket but is not reading any data, which allows local users to cause a denial of service (daemon hang) via a crafted application that performs a connect system call but no read system calls.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/35240unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://lists.fedoraproject.org/pipermail/package-announce/2011-May/059880.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-May/060053.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=688698http://secunia.com/advisories/42947http://secunia.com/advisories/44621http://www.openwall.com/lists/oss-security/2011/01/19/4http://www.openwall.com/lists/oss-security/2011/03/15/12http://www.openwall.com/lists/oss-security/2011/03/15/7http://www.securityfocus.com/bid/45915