CVE-2008-5029
CVE-2008-5029
The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive calls to itself through calls to the fput function, which allows local users to cause a denial of service (panic) via vectors related to sending an SCM_RIGHTS message through a UNIX domain socket and closing file descriptors.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://archives.neohapsis.com/archives/bugtraq/2009-01/0006.htmlhttp://darkircop.org/unix.chttp://kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.36.9http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-01/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-01/msg00010.htmlhttp://marc.info/?l=linux-netdev&m=122593044330973&w=2https://bugzilla.redhat.com/show_bug.cgi?id=470201http://secunia.com/advisories/32918http://secunia.com/advisories/32998http://secunia.com/advisories/33180http://secunia.com/advisories/33556