Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-2098

Опубликовано: 23 авг. 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.

РелизСтатусПримечание
dapper

released

2.6.15-29.58
devel

DNE

edgy

DNE

feisty

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

edgy

released

2.6.17.1-12.40
feisty

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 86%
0.03007
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 20 лет назад

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.

nvd
около 20 лет назад

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.

debian
около 20 лет назад

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2 ...

github
больше 3 лет назад

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.

EPSS

Процентиль: 86%
0.03007
Низкий

5 Medium

CVSS2