CVE-2011-1083

Linux Kernel < 2.6.37.2 - Denial of Service

Title source: rule

Description

The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descriptors, which allows local users to cause a denial of service (CPU consumption) via a crafted application that makes epoll_create and epoll_ctl system calls.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nelson Elhage · cdoslinux
https://www.exploit-db.com/exploits/35403

Scores

EPSS 0.0015
EPSS Percentile 34.9%

Details

CWE
CWE-400
Status published
Products (6)
linux/linux_kernel < 2.6.37.2
redhat/enterprise_linux_desktop 6.0
redhat/enterprise_linux_server 6.0
redhat/enterprise_linux_workstation 6.0
suse/linux_enterprise_desktop 11 sp1 (2 CPE variants)
suse/linux_enterprise_server 11 sp1 (4 CPE variants)
Published Apr 04, 2011
Tracked Since Feb 18, 2026