CVE-2006-4342

MEDIUM

Red Hat Enterprise Linux 3 - Denial of Service via shmat and shmctl Race Condition

Title source: llm
STIX 2.1

Description

The kernel in Red Hat Enterprise Linux 3, when running on SMP systems, allows local users to cause a denial of service (deadlock) by running the shmat function on an shm at the same time that shmctl is removing that shm (IPC_RMID), which prevents a spinlock from being unlocked.

References (7)

Core 7
Core References
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/245984
Exploit, Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=205618
Broken Link third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23064
Third Party Advisory x_refsource_confirm
http://support.avaya.com/elmodocs2/security/ASA-2006-254.htm
Broken Link third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22497
Broken Link vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2006-0710.html

Scores

CVSS v3 5.5
EPSS 0.0039
EPSS Percentile 30.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-667
Status published
Products (1)
redhat/enterprise_linux 3.0
Published Oct 17, 2006
Tracked Since Feb 18, 2026