The add_del_listener function in kernel/taskstats.c in the Linux kernel 2.6.39.1 and earlier does not prevent multiple registrations of exit handlers, which allows local users to cause a denial of service (memory and CPU consumption), and bypass the OOM Killer, via a crafted application.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/48383 | vdb entry third party advisory |
http://openwall.com/lists/oss-security/2011/06/22/2 | mailing list patch |
https://bugzilla.redhat.com/show_bug.cgi?id=715436 | issue tracking |
http://lists.openwall.net/linux-kernel/2011/06/16/605 | mailing list patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/68150 | vdb entry |
http://openwall.com/lists/oss-security/2011/06/22/1 | mailing list patch |