vendor:
Linux Kernel
by:
milw0rm.com
7.2
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Linux Kernel
Affected Version From: 2.6.16.x
Affected Version To: 2.6.16.x
Patch Exists: YES
Related CWE: N/A
CPE: o:linux:linux_kernel:2.6.16.x
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2006
Linux Kernel 2.6.16.x OOM Killer Local Denial of Service Vulnerability
This exploit is a local denial of service vulnerability in the Linux Kernel 2.6.16.x. It creates multiple threads that consume all available memory, causing the system to crash. The exploit uses the setsid() system call to avoid being counted as one thread in the oom_killer().
Mitigation:
The best way to mitigate this vulnerability is to upgrade to a newer version of the Linux Kernel.