2.1
CVSSv2

CVE-2005-1913

Published: 14/09/2005 Updated: 11/07/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The Linux kernel 2.6 prior to 2.6.12.1 allows local users to cause a denial of service (kernel panic) via a non group-leader thread executing a different program than was pending in itimer, which causes the signal to be delivered to the old group-leader task, which does not exist.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.0

linux linux kernel 2.6.1

linux linux kernel 2.6.11.7

linux linux kernel 2.6.11.8

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.5

linux linux kernel 2.6.8

linux linux kernel 2.6.11

linux linux kernel 2.6.11.11

linux linux kernel 2.6.12

linux linux kernel 2.6.7

linux linux kernel 2.6.10

linux linux kernel 2.6.6

linux linux kernel 2.6.9

linux linux kernel 2.6_test9_cvs

linux linux kernel 2.6.11.5

linux linux kernel 2.6.11.6

linux linux kernel 2.6.2

Vendor Advisories

Oleg Nesterov discovered a local Denial of Service vulnerability in the timer handling When a non group-leader thread called exec() to execute a different program while an itimer was pending, the timer expiry would signal the old group leader task, which did not exist any more This caused a kernel panic This vulnerability only affects Ubuntu 50 ...