vendor:
Linux Kernel
by:
SecurityFocus
7.2
CVSS
HIGH
Denial-of-Service
400
CWE
Product Name: Linux Kernel
Affected Version From: Fedora 8 prior to kernel-2.6.26.5-28
Affected Version To: Fedora 9 prior to kernel-2.6.26.5-45
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2008
Fedora 8 and 9 Linux Kernel Local Denial-of-Service Vulnerability
Fedora 8 and 9 Linux kernel is prone to a local denial-of-service vulnerability. Attackers can exploit this issue to crash the affected kernel, denying service to legitimate users. Given the nature of this issue, attackers may also be able to execute arbitrary code, but this has not been confirmed. An attacker can exploit this issue with readily available tools. The following 'gdb' command is sufficient to trigger a kernel crash: gdb any_executable 1 run
Mitigation:
Upgrade to the latest version of Fedora 8 and 9 Linux kernel.