The mountpoint_last function in fs/namei.c in the Linux kernel before 3.15.8 does not properly maintain a certain reference count during attempts to use the umount system call in conjunction with a symlink, which allows local users to cause a denial of service (memory consumption or use-after-free) or possibly have unspecified other impact via the umount program.
2014-08-01T11:13:09.460
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.2 (MEDIUM)
AV:L/AC:H/Au:N/C:C/I:C/A:C
1.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.15.8 | Yes |
Operating System | redhat | enterprise_linux_eus | 6.5 | Yes |
Operating System | redhat | enterprise_linux_server_aus | 6.5 | Yes |
Operating System | redhat | enterprise_linux_server_tus | 6.5 | Yes |