// For flags

CVE-2006-4814

kernel Race condition in mincore can cause "ps -ef" to hang

Severity Score

9.8
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock.

La función mincore en el núcleo de Linux anterior a 2.4.33.6 no bloquea adecuadamente el acceso al espacio del usuario, lo cual tiene impacto y vectores de ataque no especificados, posiblemente relativos a un bloqueo mortal.

Many vulnerabilities were discovered and corrected in the Linux 2.6 kernel. The 2.6.17 kernel and earlier, when running on IA64 and SPARC platforms would allow a local user to cause a DoS (crash) via a malformed ELF file. The mincore function in the Linux kernel did not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock. An unspecified vulnerability in the listxattr system call, when a "bad inode" is present, could allow a local user to cause a DoS (data corruption) and possibly gain privileges via unknown vectors. The zlib_inflate function allows local users to cause a crash via a malformed filesystem that uses zlib compression that triggers memory corruption. The ext3fs_dirhash function could allow local users to cause a DoS (crash) via an ext3 stream with malformed data structures. When SELinux hooks are enabled, the kernel could allow a local user to cause a DoS (crash) via a malformed file stream that triggers a NULL pointer derefernece. The key serial number collision avoidance code in the key_alloc_serial function in kernels 2.6.9 up to 2.6.20 allows local users to cause a crash via vectors thatr trigger a null dereference. The Linux kernel version 2.6.13 to 2.6.20.1 allowed a remote attacker to cause a DoS (oops) via a crafted NFSACL2 ACCESS request that triggered a free of an incorrect pointer. A local user could read unreadable binaries by using the interpreter (PT_INTERP) functionality and triggering a core dump; a variant of CVE-2004-1073.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
Single
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-09-15 CVE Reserved
  • 2006-12-20 CVE Published
  • 2014-05-12 First Exploit
  • 2024-08-07 CVE Updated
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
References (34)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
<= 2.4.33.5
Search vendor "Linux" for product "Linux Kernel" and version " <= 2.4.33.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test10
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test11
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test12
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test8
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test9
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.1
Search vendor "Linux" for product "Linux Kernel" and version "2.4.1"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.2
Search vendor "Linux" for product "Linux Kernel" and version "2.4.2"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.3
Search vendor "Linux" for product "Linux Kernel" and version "2.4.3"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.4
Search vendor "Linux" for product "Linux Kernel" and version "2.4.4"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.5
Search vendor "Linux" for product "Linux Kernel" and version "2.4.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.6
Search vendor "Linux" for product "Linux Kernel" and version "2.4.6"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.7
Search vendor "Linux" for product "Linux Kernel" and version "2.4.7"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.8
Search vendor "Linux" for product "Linux Kernel" and version "2.4.8"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.9
Search vendor "Linux" for product "Linux Kernel" and version "2.4.9"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.10
Search vendor "Linux" for product "Linux Kernel" and version "2.4.10"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.11
Search vendor "Linux" for product "Linux Kernel" and version "2.4.11"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.12
Search vendor "Linux" for product "Linux Kernel" and version "2.4.12"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.13
Search vendor "Linux" for product "Linux Kernel" and version "2.4.13"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.14
Search vendor "Linux" for product "Linux Kernel" and version "2.4.14"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.15
Search vendor "Linux" for product "Linux Kernel" and version "2.4.15"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.16
Search vendor "Linux" for product "Linux Kernel" and version "2.4.16"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.17
Search vendor "Linux" for product "Linux Kernel" and version "2.4.17"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
x86
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre8
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.20
Search vendor "Linux" for product "Linux Kernel" and version "2.4.20"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.22
Search vendor "Linux" for product "Linux Kernel" and version "2.4.22"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.23
Search vendor "Linux" for product "Linux Kernel" and version "2.4.23"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.23
Search vendor "Linux" for product "Linux Kernel" and version "2.4.23"
pre9
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.23_ow2
Search vendor "Linux" for product "Linux Kernel" and version "2.4.23_ow2"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.24
Search vendor "Linux" for product "Linux Kernel" and version "2.4.24"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.24_ow1
Search vendor "Linux" for product "Linux Kernel" and version "2.4.24_ow1"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.25
Search vendor "Linux" for product "Linux Kernel" and version "2.4.25"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.26
Search vendor "Linux" for product "Linux Kernel" and version "2.4.26"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
pre3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.27
Search vendor "Linux" for product "Linux Kernel" and version "2.4.27"
pre5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.28
Search vendor "Linux" for product "Linux Kernel" and version "2.4.28"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.29
Search vendor "Linux" for product "Linux Kernel" and version "2.4.29"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.29
Search vendor "Linux" for product "Linux Kernel" and version "2.4.29"
rc1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.29
Search vendor "Linux" for product "Linux Kernel" and version "2.4.29"
rc2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.30
Search vendor "Linux" for product "Linux Kernel" and version "2.4.30"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.30
Search vendor "Linux" for product "Linux Kernel" and version "2.4.30"
rc2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.30
Search vendor "Linux" for product "Linux Kernel" and version "2.4.30"
rc3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.31
Search vendor "Linux" for product "Linux Kernel" and version "2.4.31"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.31
Search vendor "Linux" for product "Linux Kernel" and version "2.4.31"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.32
Search vendor "Linux" for product "Linux Kernel" and version "2.4.32"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.32
Search vendor "Linux" for product "Linux Kernel" and version "2.4.32"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.32
Search vendor "Linux" for product "Linux Kernel" and version "2.4.32"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.33
Search vendor "Linux" for product "Linux Kernel" and version "2.4.33"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.33
Search vendor "Linux" for product "Linux Kernel" and version "2.4.33"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.33.2
Search vendor "Linux" for product "Linux Kernel" and version "2.4.33.2"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.33.3
Search vendor "Linux" for product "Linux Kernel" and version "2.4.33.3"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.33.4
Search vendor "Linux" for product "Linux Kernel" and version "2.4.33.4"
-
Affected