5

CVE-2009-0798

ACPI Event Daemon (acpid) before 1.0.10 allows remote attackers to cause a denial of service (CPU consumption and connectivity loss) by opening a large number of UNIX sockets without closing them, which triggers an infinite loop.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tim HockinAcpid Version <= 1.0.8
Tim HockinAcpid Version0.99.0
Tim HockinAcpid Version0.99.1
Tim HockinAcpid Version0.99.4
Tim HockinAcpid Version1.0.0
Tim HockinAcpid Version1.0.1
Tim HockinAcpid Version1.0.2
Tim HockinAcpid Version1.0.3
Tim HockinAcpid Version1.0.4
Tim HockinAcpid Version1.0.6
Tim HockinAcpid Version20010510
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.31% 0.812
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/34838
Vendor Advisory
http://secunia.com/advisories/34914
http://secunia.com/advisories/34918
http://secunia.com/advisories/35010
http://secunia.com/advisories/35209
http://secunia.com/advisories/35231
http://www.debian.org/security/2009/dsa-1786
http://www.gentoo.org/security/en/glsa/glsa-200905-06.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2009:107
http://www.redhat.com/support/errata/RHSA-2009-0474.html
http://www.securityfocus.com/bid/34692
http://www.securitytracker.com/id?1022182
http://www.ubuntu.com/usn/USN-766-1
https://bugzilla.redhat.com/show_bug.cgi?id=494443
Patch
https://bugzilla.redhat.com/show_bug.cgi?id=502583
https://exchange.xforce.ibmcloud.com/vulnerabilities/50060
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7560
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9955
https://www.redhat.com/archives/fedora-package-announce/2009-May/msg01342.html
https://www.redhat.com/archives/fedora-package-announce/2009-May/msg01365.html