CVE-2010-4249

Linux Kernel < 2.6.37 - Denial of Service

Title source: rule

Description

The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via crafted use of the socketpair and sendmsg system calls for SOCK_SEQPACKET sockets.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Key Night · cdoslinux
https://www.exploit-db.com/exploits/15622

References (23)

... and 3 more

Scores

EPSS 0.0008
EPSS Percentile 24.0%

Details

CWE
CWE-400
Status published
Products (3)
fedoraproject/fedora 13
linux/linux_kernel 2.6.37 (3 CPE variants)
linux/linux_kernel < 2.6.37
Published Nov 29, 2010
Tracked Since Feb 18, 2026