CVE-2008-5079

Linux Kernel <= 2.6.27.8 - Denial of Service via ATM Subsystem SVC Socket Handling

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-5079. PoCs published by Jon Oberheide.

AI-analyzed exploit summary This exploit triggers a local denial-of-service (DoS) in Linux Kernel <= 2.6.27.8 by corrupting the vcc table via duplicate calls to svc_listen and reading /proc/net/atm/*vc. It leverages a kernel infinite loop vulnerability in the ATM subsystem.

Description

net/atm/svc.c in the ATM subsystem in the Linux kernel 2.6.27.8 and earlier allows local users to cause a denial of service (kernel infinite loop) by making two calls to svc_listen for the same socket, and then reading a /proc/net/atm/*vc file, related to corruption of the vcc table.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Jon Oberheide · cdoslinux
https://www.exploit-db.com/exploits/7405

This exploit triggers a local denial-of-service (DoS) in Linux Kernel <= 2.6.27.8 by corrupting the vcc table via duplicate calls to svc_listen and reading /proc/net/atm/*vc. It leverages a kernel infinite loop vulnerability in the ATM subsystem.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Linux Kernel <= 2.6.27.8
No auth needed
Prerequisites: Local access to the system · ATM subsystem enabled in the kernel
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (29)

Core 29
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/499044/100/0/threaded
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2009-0225.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11288
Mailing List mailing-list x_refsource_mlist
http://marc.info/?l=linux-netdev&m=122841256115780&w=2
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33706
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-2915
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33641
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2009-0053.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33756
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33348
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/32913
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33623
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/498943/100/0/threaded
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2009:032
Third Party Advisory x_refsource_confirm
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0332
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/32676
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34981
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/4694
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33083
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/714-1/
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2009/dsa-1787
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-715-1
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33854
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1021360
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33704

Scores

EPSS 0.0109
EPSS Percentile 61.1%

Details

CWE
CWE-399
Status published
Products (43)
linux/linux_kernel 2.2.27
linux/linux_kernel 2.4.36
linux/linux_kernel 2.4.36.1
linux/linux_kernel 2.4.36.2
linux/linux_kernel 2.4.36.3
linux/linux_kernel 2.4.36.4
linux/linux_kernel 2.4.36.5
linux/linux_kernel 2.4.36.6
linux/linux_kernel 2.6
linux/linux_kernel 2.6.18 (8 CPE variants)
... and 33 more
Published Dec 09, 2008
Tracked Since Feb 18, 2026