5.5

CVE-2012-0879

The I/O implementation for block devices in the Linux kernel before 2.6.33 does not properly handle the CLONE_IO feature, which allows local users to cause a denial of service (I/O instability) by starting multiple processes that share an I/O context.

Data is provided by the National Vulnerability Database (NVD)
LinuxLinux Kernel Version < 2.6.33
CanonicalUbuntu Linux Version10.04 SwEdition-
DebianDebian Linux Version6.0
SuseLinux Enterprise Desktop Version11 Updatesp1
SuseLinux Enterprise Desktop Version11 Updatesp2
SuseLinux Enterprise Server Version11 Updatesp1
SuseLinux Enterprise Server Version11 Updatesp1 SwPlatformvmware
SuseLinux Enterprise Server Version11 Updatesp2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.244
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

http://marc.info/?l=bugtraq&m=139447903326211&w=2
Third Party Advisory
Mailing List
http://www.securitytracker.com/id?1027086
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=796829
Patch
Third Party Advisory
Issue Tracking