PT-2011-1081 · Linux+2 · Linux Kernel+3

Published

2011-03-01

·

Updated

2020-07-27

·

CVE-2011-2484

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel version 2.6.39.1 and earlier kernel-kdumppae (affected versions not specified)
Description The issue allows local users to cause a denial of service, consuming memory and CPU, and bypass the OOM Killer via a crafted application. Additionally, multiple vulnerabilities in the kernel-kdumppae package of SUSE Linux Enterprise may lead to disruption of protected information availability, potentially exploitable remotely.
Recommendations For Linux kernel version 2.6.39.1 and earlier: update to a version that prevents multiple registrations of exit handlers in the add del listener function. For kernel-kdumppae: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04607
CVE-2011-2484
DSA-2303-1
DSA-2310-1
RHSA-2011:1253
RHSA-2011:1350
RHSA-2011:1386
RHSA-2011_1350
RHSA-2011_1386
USN-1186-1
USN-1193-1
USN-1201-1
USN-1202-1
USN-1203-1
USN-1204-1
USN-1205-1
USN-1208-1
USN-1212-1
USN-1216-1
USN-1218-1
USN-1256-1

Affected Products

Linux Kernel
Red Hat
Suse
Kernel-Kdumppae