5.5

CVE-2014-8559

Exploit

The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 does not properly maintain the semantics of rename_lock, which allows local users to cause a denial of service (deadlock and system hang) via a crafted application.

Data is provided by the National Vulnerability Database (NVD)
LinuxLinux Kernel Version <= 3.17.2
CanonicalUbuntu Linux Version12.04 SwEditionesm
CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalUbuntu Linux Version14.10
OpensuseEvergreen Version11.4
OpensuseOpensuse Version13.1
SuseLinux Enterprise Real Time Extension Version11 Updatesp3
SuseSuse Linux Enterprise Server Version11 Updatesp2 SwEditionltss
OracleLinux Version7 Update-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.139
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

http://www.debian.org/security/2015/dsa-3170
Patch
Third Party Advisory
Exploit
http://www.securityfocus.com/bid/70854
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1034051
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1159313
Patch
Third Party Advisory
Issue Tracking
https://lkml.org/lkml/2014/10/25/171
Third Party Advisory
Exploit
Mailing List
https://lkml.org/lkml/2014/10/25/179
Patch
Third Party Advisory
Mailing List
https://lkml.org/lkml/2014/10/25/180
Patch
Third Party Advisory
Mailing List
https://lkml.org/lkml/2014/10/26/101
Third Party Advisory
Mailing List
https://lkml.org/lkml/2014/10/26/116
Third Party Advisory
Exploit
Mailing List
https://lkml.org/lkml/2014/10/26/128
Third Party Advisory
Mailing List
https://lkml.org/lkml/2014/10/26/129
Third Party Advisory
Mailing List