CVE-2007-0006
Mandriva Linux Security Advisory 2007.060
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The key serial number collision avoidance code in the key_alloc_serial function in Linux kernel 2.6.9 up to 2.6.20 allows local users to cause a denial of service (crash) via vectors that trigger a null dereference, as originally reported as "spinlock CPU recursion."
El código de prevención de colisiones de números de serial de claves en la función key_alloc_serial en el kernel de Linux versiones 2.6.9 hasta 2.6.20, permite a usuarios locales causar una denegación de servicio (bloqueo) por medio de vectores que desencadenan una desreferencia del null, como se reportó originalmente como una "spinlock CPU recursion".
Many vulnerabilities were discovered and corrected in the Linux 2.6 kernel. The 2.6.17 kernel and earlier, when running on IA64 and SPARC platforms would allow a local user to cause a DoS (crash) via a malformed ELF file. The mincore function in the Linux kernel did not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock. An unspecified vulnerability in the listxattr system call, when a "bad inode" is present, could allow a local user to cause a DoS (data corruption) and possibly gain privileges via unknown vectors. The zlib_inflate function allows local users to cause a crash via a malformed filesystem that uses zlib compression that triggers memory corruption. The ext3fs_dirhash function could allow local users to cause a DoS (crash) via an ext3 stream with malformed data structures. When SELinux hooks are enabled, the kernel could allow a local user to cause a DoS (crash) via a malformed file stream that triggers a NULL pointer derefernece. The key serial number collision avoidance code in the key_alloc_serial function in kernels 2.6.9 up to 2.6.20 allows local users to cause a crash via vectors thatr trigger a null dereference. The Linux kernel version 2.6.13 to 2.6.20.1 allowed a remote attacker to cause a DoS (oops) via a crafted NFSACL2 ACCESS request that triggered a free of an incorrect pointer. A local user could read unreadable binaries by using the interpreter (PT_INTERP) functionality and triggering a core dump; a variant of CVE-2004-1073.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2006-12-19 CVE Reserved
- 2007-02-06 CVE Published
- 2024-08-07 CVE Updated
- 2025-04-23 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (22)
URL | Tag | Source |
---|---|---|
http://bugzilla.kernel.org/show_bug.cgi?id=7727 | X_refsource_confirm | |
http://www.securityfocus.com/archive/1/471457 | Mailing List | |
http://www.securityfocus.com/bid/22539 | Vdb Entry | |
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=227495 | X_refsource_confirm | |
https://issues.rpath.com/browse/RPL-1097 | X_refsource_confirm | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9829 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/24109 | 2017-10-11 | |
http://secunia.com/advisories/24259 | 2017-10-11 | |
http://secunia.com/advisories/24300 | 2017-10-11 | |
http://secunia.com/advisories/24429 | 2017-10-11 | |
http://secunia.com/advisories/24482 | 2017-10-11 | |
http://secunia.com/advisories/24547 | 2017-10-11 | |
http://secunia.com/advisories/24752 | 2017-10-11 | |
http://secunia.com/advisories/25691 | 2017-10-11 | |
http://www.mandriva.com/security/advisories?name=MDKSA-2007:047 | 2017-10-11 | |
http://www.mandriva.com/security/advisories?name=MDKSA-2007:060 | 2017-10-11 | |
http://www.novell.com/linux/security/advisories/2007_21_kernel.html | 2017-10-11 | |
http://www.redhat.com/support/errata/RHSA-2007-0085.html | 2017-10-11 | |
http://www.redhat.com/support/errata/RHSA-2007-0099.html | 2017-10-11 | |
http://www.ubuntu.com/usn/usn-451-1 | 2017-10-11 | |
https://access.redhat.com/security/cve/CVE-2007-0006 | 2007-03-14 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1618259 | 2007-03-14 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | <= 2.6.20 Search vendor "Linux" for product "Linux Kernel" and version " <= 2.6.20" | - |
Affected
| ||||||
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | 2.6.9 Search vendor "Linux" for product "Linux Kernel" and version "2.6.9" | 2.6.20 |
Affected
|