Double free vulnerability in the utrace support in the Linux kernel, probably 2.6.18, in Red Hat Enterprise Linux (RHEL) 5 and Fedora Core 6 (FC6) allows local users to cause a denial of service (oops), as demonstrated by a crash when running the GNU GDB testsuite, a different vulnerability than CVE-2008-2365.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fedora_core | Fedoraproject | 6 (including) | 6 (including) |
Linux_kernel | Linux | 2.6.18 (including) | 2.6.18 (including) |
Enterprise_linux | Redhat | 5.0 (including) | 5.0 (including) |