CVE-2006-5331

MEDIUM

Linux Kernel < 2.6.19 - Denial of Service via Altivec Instruction Handling

Title source: llm
STIX 2.1

Description

The altivec_unavailable_exception function in arch/powerpc/kernel/traps.c in the Linux kernel before 2.6.19 on 64-bit systems mishandles the case where CONFIG_ALTIVEC is defined and the CPU actually supports Altivec, but the Altivec support was not detected by the kernel, which allows local users to cause a denial of service (panic) by triggering execution of an Altivec instruction.

References (4)

Core 4
Core References
Issue Tracking, Patch, Third Party Advisory x_refsource_confirm
https://github.com/torvalds/linux/commit/6c4841c2b6c32a134f9f36e5e08857138cc12b10
Issue Tracking, Patch, Third Party Advisory x_refsource_confirm
http://www.linuxgrill.com/anonymous/kernel/v2.6/ChangeLog-2.6.19
Issue Tracking, Patch, Third Party Advisory x_refsource_confirm
https://bugzilla.suse.com/show_bug.cgi?id=213229

Scores

CVSS v3 5.5
EPSS 0.0043
EPSS Percentile 35.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-19
Status published
Products (1)
linux/linux_kernel < 2.6.19
Published Oct 29, 2017
Tracked Since Feb 18, 2026