The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (memory consumption) and possibly bypass memory limits or cause other processes to be killed by creating a large number of posix timers, which are allocated in kernel memory but are not treated as part of the process' memory.
2007-02-24T00:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 4.9 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:N/A:C
3.9
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | 2.6.18.0 | Yes |
Operating System | linux | linux_kernel | 2.6.18.1 | Yes |
Operating System | linux | linux_kernel | 2.6.18.2 | Yes |
Operating System | linux | linux_kernel | 2.6.18.3 | Yes |
Operating System | linux | linux_kernel | 2.6.18.4 | Yes |
Operating System | linux | linux_kernel | 2.6.18.5 | Yes |
Operating System | linux | linux_kernel | 2.6.18.6 | Yes |
Operating System | linux | linux_kernel | 2.6.18.7 | Yes |
Operating System | linux | linux_kernel | 2.6.19 | Yes |
Operating System | linux | linux_kernel | 2.6.19.1 | Yes |
Operating System | linux | linux_kernel | 2.6.19.2 | Yes |
Operating System | linux | linux_kernel | 2.6.19.3 | Yes |
Operating System | linux | linux_kernel | 2.6.19.4 | Yes |
Operating System | linux | linux_kernel | 2.6.20 | Yes |
Operating System | linux | linux_kernel | 2.6.20.1 | Yes |