CVE-2011-1159

Tedfelix Acpid < 2.0.8 - Improper Input Validation

Title source: rule

Description

acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has connected to acpid.socket but is not reading any data, which allows local users to cause a denial of service (daemon hang) via a crafted application that performs a connect system call but no read system calls.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Vasiliy Kulikov · cdoslinux
https://www.exploit-db.com/exploits/35240

Scores

EPSS 0.0018
EPSS Percentile 38.8%

Details

CWE
CWE-20
Status published
Products (11)
tedfelix/acpid 1.0.8
tedfelix/acpid 1.0.10
tedfelix/acpid 2.0.0
tedfelix/acpid 2.0.1
tedfelix/acpid 2.0.2
tedfelix/acpid 2.0.3
tedfelix/acpid 2.0.4
tedfelix/acpid 2.0.5
tedfelix/acpid 2.0.7
tedfelix/acpid 2.06
... and 1 more
Published Oct 05, 2011
Tracked Since Feb 18, 2026