Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-4021

Опубликовано: 22 окт. 2009
Источник: redhat
CVSS2: 4.6

Описание

The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption attack.

Отчет

Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/CVE-2009-4021 The Linux kernel packages as shipped with Red Hat Enterprise Linux 3 and 4 do not include support for FUSE, and therefore are not affected by this issue. A future kernel update for Red Hat Enterprise MRG will address this flaw.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=538734kernel: fuse: prevent fuse_put_request on invalid pointer

4.6 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption attack.

nvd
больше 15 лет назад

The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption attack.

debian
больше 15 лет назад

The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in ...

github
около 3 лет назад

The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption attack.

oracle-oval
больше 15 лет назад

ELSA-2010-0046: kernel security and bug fix update (IMPORTANT)

4.6 Medium

CVSS2