PT-2010-1701 · Linux · Linux Kernel

Eugene Teo

·

Published

2010-09-08

·

Updated

2023-12-28

·

CVE-2009-4895

CVSS v2.0

4.7

Medium

VectorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.32.6
Description A race condition in the tty fasync function allows local users to cause a denial of service, potentially resulting in a system crash due to a NULL pointer dereference. The issue is related to the put tty queue and f setown functions.
Recommendations For Linux kernel versions prior to 2.6.32.6, update to version 2.6.32.6 or later to resolve the issue.

Fix

Race Condition

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2009-4895
DSA-2094-1
RHSA-2010:0161

Affected Products

Linux Kernel