Secunia Logo
 
CVE Reference: CVE-2005-3356
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-3356

Description:
The mq_open system call in Linux kernel 2.6.9, in certain situations, can decrement a counter twice ("double decrement") as a result of multiple calls to the mntput function when the dentry_open function call fails, which allows local users to cause a denial of service (panic) via unspecified attack vectors.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/25302

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-244-1

SUSE
  http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html
  http://www.novell.com/linux/security/advisories/2006_06_kernel.html

SAID
  Secunia Advisory: SA18527
  Secunia Advisory: SA18788
  Secunia Advisory: SA19038
  Secunia Advisory: SA18510
  Secunia Advisory: SA19374

REDHAT
  http://rhn.redhat.com/errata/RHSA-2006-0101.html

MANDRIVA
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:040

FEDORA
  http://www.securityfocus.com/archive/1/archive/1/427980/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/427981/100/0/threaded

DEBIAN
  http://www.debian.org/security/2006/dsa-1017

CONFIRM
  http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=169130
  http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7c7dce9209161eb260cdf9e9172f72c3a02379e6

BID
  16283


Return to the previous page.