4.9
CVSSv2

CVE-2005-3807

Published: 25/11/2005 Updated: 07/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 495
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Memory leak in the VFS file lease handling in locks.c in Linux kernels 2.6.10 to 2.6.15 allows local users to cause a denial of service (memory exhaustion) via certain Samba activities that cause an fasync entry to be re-allocated by the fcntl_setlease function after the fasync queue has already been cleaned by the locks_delete_lock function.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.11.10

linux linux kernel 2.6.1

linux linux kernel 2.6.13

linux linux kernel 2.6.13.3

linux linux kernel 2.6.11.8

linux linux kernel 2.6.10

linux linux kernel 2.6.14.3

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.2

linux linux kernel 2.6.13.2

linux linux kernel 2.6.8

linux linux kernel 2.6.14.1

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.6.0

linux linux kernel 2.6.13.4

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.7

linux linux kernel 2.6.9

linux linux kernel 2.6.12.6

linux linux kernel 2.6.11.7

linux linux kernel 2.6.15

linux linux kernel 2.6.14.2

linux linux kernel 2.6.8.1

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.1

linux linux kernel 2.6.13.1

linux linux kernel 2.6.6

linux linux kernel 2.6.12

Vendor Advisories

Rudolf Polzer reported an abuse of the ‘loadkeys’ command By redefining one or more keys and tricking another user (like root) into logging in on a text console and typing something that involves the redefined keys, a local user could cause execution of arbitrary commands with the privileges of the target user The updated kernel restrict ...

Exploits

/* source: wwwsecurityfocuscom/bid/15745/info Linux kernel is susceptible to a local denial-of-service vulnerability This issue is triggered when excessive kernel memory is consumed by numerous file-lock leases This problem stems from a memory leak in the kernel's file-lock lease code This issue allows local attackers to consume exce ...