PT-2007-7477 · Linux+1 · Linux-Headers-2.6.18-5+5
Published
1970-01-01
·
Updated
2023-02-13
·
CVE-2007-3731
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
linux-headers-2.6.18-5 versions 2.6.18-5
linux-image-2.6.18-5 versions 2.6.18-5
linux-modules-2.6.18-5 versions 2.6.18-5
linux-support-2.6.18-5 versions 2.6.18-5
Description
The issue affects the Linux kernel and may lead to a denial of service due to a NULL dereference and OOPS when handling an invalid LDT segment selector in %cs during ptrace single-step operations. This could be related to the TRACE IRQS ON function and the arch ptrace function. The vulnerability may allow local users to cause a denial of service.
Recommendations
For linux-headers-2.6.18-5 version 2.6.18-5, update to a newer version that contains a fix for this issue.
For linux-image-2.6.18-5 version 2.6.18-5, update to a newer version that contains a fix for this issue.
For linux-modules-2.6.18-5 version 2.6.18-5, update to a newer version that contains a fix for this issue.
For linux-support-2.6.18-5 version 2.6.18-5, update to a newer version that contains a fix for this issue.
Exploit
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux
Red Hat
Linux-Headers-2.6.18-5
Linux-Image-2.6.18-5
Linux-Modules-2.6.18-5
Linux-Support-2.6.18-5