PT-2009-5258 · Linux+1 · Linux Kernel+1

Josh Bressers

·

Published

2009-10-13

·

Updated

2026-02-10

·

CVE-2009-2908

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Linux kernel version 2.6.31
Description: The issue allows local users to cause a denial of service and possibly execute arbitrary code via unspecified vectors that cause a "negative dentry" and trigger a NULL pointer dereference. This can be demonstrated via a Mutt temporary directory in an eCryptfs mount.
Recommendations: For Linux kernel version 2.6.31, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2009-2908
DSA-1915-1
DSA-1928-1
RHSA-2009:1548
RHSA-2009_1548

Affected Products

Linux Kernel
Red Hat