CVE-2011-2484

Linux Kernel < 2.6.39.1 - Denial of Service via Multiple Exit Handler Registrations

Title source: llm
STIX 2.1

Description

The add_del_listener function in kernel/taskstats.c in the Linux kernel 2.6.39.1 and earlier does not prevent multiple registrations of exit handlers, which allows local users to cause a denial of service (memory and CPU consumption), and bypass the OOM Killer, via a crafted application.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/48383
Mailing List, Patch mailing-list x_refsource_mlist
http://openwall.com/lists/oss-security/2011/06/22/2
Issue Tracking x_refsource_misc
https://bugzilla.redhat.com/show_bug.cgi?id=715436
Patch mailing-list x_refsource_mlist
http://lists.openwall.net/linux-kernel/2011/06/16/605
Mailing List, Patch mailing-list x_refsource_mlist
http://openwall.com/lists/oss-security/2011/06/22/1

Scores

EPSS 0.0039
EPSS Percentile 31.7%

Details

CWE
CWE-399
Status published
Products (1)
linux/linux_kernel < 2.6.39.1
Published Jun 24, 2011
Tracked Since Feb 18, 2026