CVE Vulnerabilities

CVE-2007-5966

Published: Dec 20, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
7.2 IMPORTANT
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the hrtimer_start function in kernel/hrtimer.c in the Linux kernel before 2.6.23.10 allows local users to execute arbitrary code or cause a denial of service (panic) via a large relative timeout value. NOTE: some of these details are obtained from third party information.

Affected Software

NameVendorStart VersionEnd Version
Linux_kernelLinux2.6.23 (including)2.6.23 (including)
Linux_kernelLinux2.6.23-rc1 (including)2.6.23-rc1 (including)
Linux_kernelLinux2.6.23-rc2 (including)2.6.23-rc2 (including)
Linux_kernelLinux2.6.23.1 (including)2.6.23.1 (including)
Linux_kernelLinux2.6.23.2 (including)2.6.23.2 (including)
Linux_kernelLinux2.6.23.3 (including)2.6.23.3 (including)
Linux_kernelLinux2.6.23.4 (including)2.6.23.4 (including)
Linux_kernelLinux2.6.23.5 (including)2.6.23.5 (including)
Linux_kernelLinux2.6.23.6 (including)2.6.23.6 (including)
Linux_kernelLinux2.6.23.7 (including)2.6.23.7 (including)
Linux_kernelLinux2.6.23.9 (including)2.6.23.9 (including)
MRG for RHEL-5RedHatkernel-rt-0:2.6.24.7-74.el5rt*
Red Hat Enterprise Linux 5RedHatkernel-0:2.6.18-128.4.1.el5*
Red Hat Enterprise Linux 5.2 Z StreamRedHatkernel-0:2.6.18-92.1.35.el5*
Red Hat Enterprise Linux 5.3.Z - Server OnlyRedHatkernel-0:2.6.18-128.4.1.el5*
LinuxUbuntuupstream*
Linux-source-2.6.17Ubuntuedgy*
Linux-source-2.6.20Ubuntufeisty*
Linux-source-2.6.22Ubuntugutsy*

References