PT-2006-4507 · Linux · Linux Kernel
Published
2006-08-04
·
Updated
2011-01-19
·
CVE-2006-3634
CVSS v2.0
4.9
Medium
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 2.6.17-rc4 through 2.6.18-rc2
Description
The issue concerns the
futex atomic op and futex atomic cmpxchg inatomic functions, which perform atomic futex operations in the kernel address space instead of the user address space. This allows local users to cause a denial of service, resulting in a system crash.Recommendations
For Linux kernel versions 2.6.17-rc4 through 2.6.18-rc2, consider upgrading to a version outside of this range to resolve the issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel