Oval Definition:oval:org.mitre.oval:def:10749
Revision Date:2013-04-29Version:11
Title:Race condition in the ptrace and utrace support in the Linux kernel 2.6.9 through 2.6.25, as used in Red Hat Enterprise Linux (RHEL) 4, allows local users to cause a denial of service (oops) via a long series of PTRACE_ATTACH ptrace calls to another user's process that trigger a conflict between utrace_detach and report_quiescent, related to "late ptrace_may_attach() check" and "race around dead_engine_ops setting," a different vulnerability than CVE-2007-0771 and CVE-2008-1514. NOTE: this issue might only affect kernel versions before 2.6.16.x.
Description:Race condition in the ptrace and utrace support in the Linux kernel 2.6.9 through 2.6.25, as used in Red Hat Enterprise Linux (RHEL) 4, allows local users to cause a denial of service (oops) via a long series of PTRACE_ATTACH ptrace calls to another user's process that trigger a conflict between utrace_detach and report_quiescent, related to "late ptrace_may_attach() check" and "race around &dead_engine_ops setting," a different vulnerability than CVE-2007-0771 and CVE-2008-1514. NOTE: this issue might only affect kernel versions before 2.6.16.x.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2008-2365
Platform(s):CentOS Linux 4
Oracle Linux 4
Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • RHEL4, CentOS4 or Oracle Linux 4
  • The operating system installed on the system is Red Hat Enterprise Linux 4
  • OR CentOS Linux 4.x
  • OR Oracle Linux 4.x
  • AND Configuration section
  • kernel-xenU is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-hugemem is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-hugemem-devel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-xenU-devel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-smp-devel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-largesmp-devel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-devel is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-doc is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-largesmp is earlier than 0:2.6.9-67.0.20.EL
  • OR kernel-smp is earlier than 0:2.6.9-67.0.20.EL
  • BACK