Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3621

Опубликовано: 19 окт. 2009
Источник: redhat
CVSS2: 4.9
EPSS Низкий

Описание

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.

Отчет

This issue is not planned to be fixed in Red Hat Enterprise Linux 3, due to this product being in Production 3 of its maintenance life-cycle, where only qualified security errata of important or critical impact are addressed. For further information about Errata Support Policy, visit: https://access.redhat.com/support/policy/updates/errata/

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=529626kernel: AF_UNIX: Fix deadlock on connecting to shutdown socket

EPSS

Процентиль: 11%
0.00039
Низкий

4.9 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 15 лет назад

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.

CVSS3: 5.5
nvd
больше 15 лет назад

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.

CVSS3: 5.5
debian
больше 15 лет назад

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows loc ...

CVSS3: 5.5
github
около 3 лет назад

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.

oracle-oval
больше 15 лет назад

ELSA-2009-1670: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 11%
0.00039
Низкий

4.9 Medium

CVSS2