4.9

CVE-2008-5300

Linux kernel 2.6.28 allows local users to cause a denial of service ("soft lockup" and process loss) via a large number of sendmsg function calls, which does not block during AF_UNIX garbage collection and triggers an OOM condition, a different vulnerability than CVE-2008-5029.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinuxLinux Kernel Version2.6.28
LinuxLinux Kernel Version2.6.28 Updaterc1
LinuxLinux Kernel Version2.6.28 Updaterc2
LinuxLinux Kernel Version2.6.28 Updaterc3
LinuxLinux Kernel Version2.6.28 Updaterc4
LinuxLinux Kernel Version2.6.28 Updaterc5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.41% 0.321
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/33556
http://www.redhat.com/support/errata/RHSA-2009-0014.html
http://secunia.com/advisories/32998
http://www.debian.org/security/2008/dsa-1681
http://www.securityfocus.com/archive/1/512019/100/0/threaded
https://bugzilla.redhat.com/show_bug.cgi?id=470201
Vendor Advisory
https://rhn.redhat.com/errata/RHSA-2009-1550.html
http://secunia.com/advisories/33706
http://secunia.com/advisories/33854
http://www.redhat.com/support/errata/RHSA-2009-0053.html
https://usn.ubuntu.com/714-1/
http://secunia.com/advisories/33083
http://secunia.com/advisories/33348
http://secunia.com/advisories/33756
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0332
http://www.securityfocus.com/archive/1/499044/100/0/threaded
http://www.ubuntu.com/usn/usn-715-1
https://issues.rpath.com/browse/RPL-2915
https://www.redhat.com/archives/fedora-package-announce/2008-December/msg01358.html
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=473259
http://marc.info/?l=linux-netdev&m=122721862313564&w=2
http://marc.info/?l=linux-netdev&m=122765505415944&w=2
http://osvdb.org/50272
http://secunia.com/advisories/32913
http://securityreason.com/securityalert/4673
http://www.mandriva.com/security/advisories?name=MDVSA-2009:032
http://www.securityfocus.com/bid/32516
https://exchange.xforce.ibmcloud.com/vulnerabilities/46943
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10283
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11427