CVE-2007-5087

Linux Kernel < 2.4.35.3 - Denial of Service via /proc/net/atm/arp Read

Title source: llm
STIX 2.1

Description

The ATM module in the Linux kernel before 2.4.35.3, when CLIP support is enabled, allows local users to cause a denial of service (kernel panic) by reading /proc/net/atm/arp before the CLIP module has been loaded.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39237
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3246
Various Sources x_refsource_confirm
http://lwn.net/Articles/251162/
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25798

Scores

EPSS 0.0037
EPSS Percentile 29.7%

Details

CWE
CWE-264
Status published
Products (1)
linux/linux_kernel < 2.4.35.2
Published Sep 26, 2007
Tracked Since Feb 18, 2026