CVE-2012-1146
MEDIUMLinux Kernel < 3.2.10 - NULL Pointer Dereference
Title source: ruleDescription
The mem_cgroup_usage_unregister_event function in mm/memcontrol.c in the Linux kernel before 3.2.10 does not properly handle multiple events that are attached to the same eventfd, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by registering memory threshold events.
References (10)
Scores
CVSS v3
5.5
EPSS
0.0010
EPSS Percentile
26.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-476
Status
draft
Affected Products (6)
linux/linux_kernel
< 3.2.10
fedoraproject/fedora
suse/linux_enterprise_desktop
suse/linux_enterprise_high_availability_extension
suse/linux_enterprise_server
suse/linux_enterprise_server
Timeline
Published
May 17, 2012
Tracked Since
Feb 18, 2026