fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a crafted exec system call, aka an "OOM dodging issue," a related issue to CVE-2010-3858.
References
Configurations
History
21 Nov 2024, 01:20
Type | Values Removed | Values Added |
---|---|---|
References | () http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3c77f845722158206a7209c45ccddc264d19319c - | |
References | () http://grsecurity.net/~spender/64bit_dos.c - Broken Link | |
References | () http://linux.derkeiler.com/Mailing-Lists/Kernel/2010-11/msg13278.html - Broken Link | |
References | () http://lkml.org/lkml/2010/8/27/429 - Mailing List, Patch, Third Party Advisory | |
References | () http://lkml.org/lkml/2010/8/29/206 - Mailing List, Patch, Third Party Advisory | |
References | () http://lkml.org/lkml/2010/8/30/138 - Mailing List, Patch, Third Party Advisory | |
References | () http://lkml.org/lkml/2010/8/30/378 - Mailing List, Third Party Advisory | |
References | () http://openwall.com/lists/oss-security/2010/11/22/15 - Mailing List, Third Party Advisory | |
References | () http://openwall.com/lists/oss-security/2010/11/22/6 - Mailing List, Third Party Advisory | |
References | () http://secunia.com/advisories/42884 - Third Party Advisory | |
References | () http://secunia.com/advisories/46397 - Third Party Advisory | |
References | () http://www.exploit-db.com/exploits/15619 - Exploit, Third Party Advisory, VDB Entry | |
References | () http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37 - Broken Link | |
References | () http://www.redhat.com/support/errata/RHSA-2011-0017.html - Third Party Advisory | |
References | () http://www.securityfocus.com/archive/1/520102/100/0/threaded - Third Party Advisory, VDB Entry | |
References | () http://www.securityfocus.com/bid/45004 - Third Party Advisory, VDB Entry | |
References | () http://www.vmware.com/security/advisories/VMSA-2011-0012.html - Third Party Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=625688 - Issue Tracking, Third Party Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/64700 - VDB Entry |
Information
Published : 2011-01-22 22:00
Updated : 2024-11-21 01:20
NVD link : CVE-2010-4243
Mitre link : CVE-2010-4243
CVE.ORG link : CVE-2010-4243
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-400
Uncontrolled Resource Consumption