The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_kernel | Linux | 2.6.11 | 2.6.11 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.11 | 2.6.11 |
Linux_kernel | Linux | 2.6.12 | 2.6.12 |
Linux_kernel | Linux | 2.6.12 | 2.6.12 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.11.2 | 2.6.11.2 |
Linux_kernel | Linux | 2.6.5 | 2.6.5 |
Linux_kernel | Linux | 2.6.1 | 2.6.1 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.11.8 | 2.6.11.8 |
Linux_kernel | Linux | 2.6.11_rc1_bk6 | 2.6.11_rc1_bk6 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.10 | 2.6.10 |
Linux_kernel | Linux | 2.6.11.6 | 2.6.11.6 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.3 | 2.6.3 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.4 | 2.6.4 |
Linux_kernel | Linux | 2.6_test9_cvs | 2.6_test9_cvs |
Linux_kernel | Linux | 2.6.11.5 | 2.6.11.5 |
Linux_kernel | Linux | 2.6.7 | 2.6.7 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.2 | 2.6.2 |
Linux_kernel | Linux | 2.6.8 | 2.6.8 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.1 | 2.6.1 |
Linux_kernel | Linux | 2.6.11 | 2.6.11 |
Linux_kernel | Linux | 2.6.8 | 2.6.8 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.10 | 2.6.10 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.11.3 | 2.6.11.3 |
Linux_kernel | Linux | 2.6.7 | 2.6.7 |
Linux_kernel | Linux | 2.6.11 | 2.6.11 |
Linux_kernel | Linux | 2.6.1 | 2.6.1 |
Linux_kernel | Linux | 2.6.6 | 2.6.6 |
Linux_kernel | Linux | 2.6.9 | 2.6.9 |
Linux_kernel | Linux | 2.6.11.7 | 2.6.11.7 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1 | 2.6.8.1 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8 | 2.6.8 |
Linux_kernel | Linux | 2.6.8.1.5 | 2.6.8.1.5 |
Linux_kernel | Linux | 2.6.8 | 2.6.8 |
Linux_kernel | Linux | 2.6.11.4 | 2.6.11.4 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |
Linux_kernel | Linux | 2.6.11.1 | 2.6.11.1 |
Linux_kernel | Linux | 2.6.6 | 2.6.6 |
Linux_kernel | Linux | 2.6.0 | 2.6.0 |