CVE-2005-3857

MEDIUM

Description

The time_out_leases function in locks.c for Linux kernel before 2.6.15-rc3 allows local users to cause a denial of service (kernel log message consumption) by causing a large number of broken leases, which is recorded to the log using the printk function.

References

ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U

http://marc.info/?l=linux-kernel&m=113175851920568&w=2

http://marc.info/?l=linux-kernel&m=113190437101622&w=2

http://secunia.com/advisories/17786

http://secunia.com/advisories/17787

http://secunia.com/advisories/18203

http://secunia.com/advisories/18510

http://secunia.com/advisories/18562

http://secunia.com/advisories/19369

http://secunia.com/advisories/19374

http://secunia.com/advisories/19607

http://www.debian.org/security/2006/dsa-1017

http://www.debian.org/security/2006/dsa-1018

http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7ed0175a462c4c30f6df6fac1cccac058f997739

http://www.mandriva.com/security/advisories?name=MDKSA-2006:072

http://www.redhat.com/support/errata/RHSA-2006-0101.html

http://www.redhat.com/support/errata/RHSA-2006-0140.html

http://www.securityfocus.com/archive/1/427981/100/0/threaded

http://www.securityfocus.com/archive/1/428028/100/0/threaded

http://www.securityfocus.com/archive/1/428058/100/0/threaded

http://www.securityfocus.com/bid/15627

http://www.trustix.org/errata/2005/0070

http://www.vupen.com/english/advisories/2005/2649

https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=174337

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9727

https://usn.ubuntu.com/231-1/

Details

Source: MITRE

Published: 2005-11-27

Updated: 2018-10-19

Type: CWE-399

Risk Information

CVSS v2.0

Base Score: 4.9

Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 3.9

Severity: MEDIUM