Linux kernel 2.4.1 through 2.4.19 sets root's NR_RESERVED_FILES limit to 10 files, which allows local users to cause a denial of service (resource exhaustion) by opening 10 setuid binaries.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/281359 | mailing list |
http://online.securityfocus.com/archive/1/281100 | mailing list |
http://www.securityfocus.com/bid/5178 | vdb entry exploit |
http://www.iss.net/security_center/static/9515.php | vdb entry |