PT-2011-1081 · Linux+2 · Linux Kernel+3

Publicado

2011-03-01

·

Atualizado

2020-07-27

·

CVE-2011-2484

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel version 2.6.39.1 and earlier kernel-kdumppae (affected versions not specified)
Description The issue allows local users to cause a denial of service, consuming memory and CPU, and bypass the OOM Killer via a crafted application. Additionally, multiple vulnerabilities in the kernel-kdumppae package of SUSE Linux Enterprise may lead to disruption of protected information availability, potentially exploitable remotely.
Recommendations For Linux kernel version 2.6.39.1 and earlier: update to a version that prevents multiple registrations of exit handlers in the add del listener function. For kernel-kdumppae: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-04607
CVE-2011-2484
DSA-2303-1
DSA-2310-1
RHSA-2011:1253
RHSA-2011:1350
RHSA-2011:1386
RHSA-2011_1350
RHSA-2011_1386
USN-1186-1
USN-1193-1
USN-1201-1
USN-1202-1
USN-1203-1
USN-1204-1
USN-1205-1
USN-1208-1
USN-1212-1
USN-1216-1
USN-1218-1
USN-1256-1

Produtos afetados

Linux Kernel
Red Hat
Suse
Kernel-Kdumppae