CVE-2001-0907

Linux Kernel 2.2.1-2.2.19 and 2.4.1-2.4.10 - Denial of Service via Deeply Nested Symlinks

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2001-0907. PoCs published by Nergal.

AI-analyzed exploit summary This exploit creates a long chain of symbolic links to trigger a denial-of-service condition in vulnerable Linux kernels by blocking the process scheduler during dereferencing. The script automates the creation of nested symbolic links to achieve this effect.

Description

Linux kernel 2.2.1 through 2.2.19, and 2.4.1 through 2.4.10, allows local users to cause a denial of service via a series of deeply nested symlinks, which causes the kernel to spend extra time when trying to access the link.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nergal · bashdoslinux
https://www.exploit-db.com/exploits/21122

This exploit creates a long chain of symbolic links to trigger a denial-of-service condition in vulnerable Linux kernels by blocking the process scheduler during dereferencing. The script automates the creation of nested symbolic links to achieve this effect.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Linux kernel (versions affected by CVE-2001-0907)
Auth required
Prerequisites: local access to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Broken Link vendor-advisory x_refsource_caldera
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2001-036.0.txt
Broken Link vendor-advisory x_refsource_immunix
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-035-01
Third Party Advisory vendor-advisory x_refsource_engarde
http://www.linuxsecurity.com/advisories/other_advisory-1650.html
Mailing List, Third Party Advisory mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=100343090106914&w=2
Mailing List, Third Party Advisory mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=100350685431610&w=2
Broken Link vendor-advisory x_refsource_mandrake
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-082.php3
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/3444
Third Party Advisory vendor-advisory x_refsource_mandrake
http://frontal2.mandriva.com/security/advisories?name=MDKSA-2001:079
Broken Link vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/7312.php

Scores

EPSS 0.0079
EPSS Percentile 51.4%

Details

Status published
Products (1)
linux/linux_kernel 2.2.1 - 2.2.19
Published Oct 18, 2001
Tracked Since Feb 18, 2026